SkillAgentSearch skills...

algolia-enterprise-rbac

Map workforce roles and application actors to Algolia team permissions, API-key ACLs, and secured-key restrictions

Install / Use

npx skills add jeremylongshore/tons-of-skills-marketplace --skill algolia-enterprise-rbac

Installs into whichever agent you are using.

About this skill
📄

SKILL.md

Installable skill definition

Quality Score

85/100

Supported Platforms

Universal

Our assessment of algolia-enterprise-rbac

algolia-enterprise-rbac scores 85/100 on our quality scale, 1752nd of 3,845 Development & Engineering skills we index (top 46%).

Its SKILL.md is 4.0 KB long, well organised into 12 sections with 2 code examples: a solid amount of guidance for an agent.

With 2,785 GitHub stars, it is one of the more widely adopted skills in the catalogue.

Substance
26/30
Structure
18/20
Description
12/15
Adoption
15/20
Freshness
15/15

Maintenance, license and trust

  • The repository was last updated 6 days ago, so algolia-enterprise-rbac is actively maintained.
  • It is released under the MIT license, a permissive license that allows use, modification and commercial use with attribution.
  • Its trust signals score 100/100, with no cautions. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.

algolia-enterprise-rbac compared with similar skills

All 4 of these similar skills score higher than algolia-enterprise-rbac; compare them before choosing.

SkillScoreStarsUpdatedFormat
algolia-enterprise-rbac (this skill)by jeremylongshore852.8k6d agoSKILL.md
Agent-Reachby Panniantong10086.3k14d agoCLAUDE.md
headroomby headroomlabs-ai10074.1ktodayCLAUDE.md
ai-job-searchby MadsLorentzen10044.5ktodayCLAUDE.md
claude-howtoby luongnv8910041.7k4d agoCLAUDE.md

Frequently asked questions

How do I install algolia-enterprise-rbac?
Run npx skills add jeremylongshore/tons-of-skills-marketplace --skill algolia-enterprise-rbac. The install tabs above show the steps for each supported agent.
Which AI agents does algolia-enterprise-rbac work with?
It is written for Universal, as a SKILL.md file. Other agents that read the same format can often use it too.
Is algolia-enterprise-rbac safe to use?
It is MIT-licensed and scores 100/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
Is algolia-enterprise-rbac still maintained?
The repository was last updated 6 days ago, so algolia-enterprise-rbac is actively maintained.

name: algolia-enterprise-rbac description: >- Map workforce roles and application actors to Algolia team permissions, API-key ACLs, and secured-key restrictions. Use when reviewing least privilege, tenancy, SSO requirements, or access rotation. Trigger with "Algolia RBAC", "Algolia SSO", or "Algolia tenant access". argument-hint: "[repository-path] [application-or-role]" allowed-tools: Read, Glob, Grep, WebFetch, Write, Edit version: 1.8.0 author: Jeremy Longshore jeremy@intentsolutions.io license: MIT tags:

  • saas
  • algolia
  • access-control model: inherit effort: medium compatibility: Designed for Claude Code

Algolia Enterprise Access Design

Overview

This skill separates human dashboard access, backend service access, browser search access, and tenant-scoped access. It verifies current account capabilities instead of assuming every plan exposes the same roles or SSO features.

Prerequisites

  • A named repository, environment, and Algolia application or index in scope
  • The local lockfile and installed client types as implementation authority
  • A safe read-only query or explicitly disposable test target
  • Current first-party documentation for any provider behavior that affects the change

Tool Discipline

Use Read, Glob, and Grep to inspect local code, configuration names, tests, and dependency versions. Use WebFetch only for current official Algolia documentation. Use Write or Edit only after identifying the target files, constraints, and verification plan.

Current Contract

  • Treat current dashboard settings and contracted features as the authority for workforce roles and SSO availability.
  • Map service operations to documented API-key ACLs and index restrictions.
  • Generate secured search keys only on a trusted backend and require at least one restriction.
  • Model application tenancy in filters and key restrictions; do not confuse that model with provider workforce RBAC.

Authentication

Review key descriptions, ACLs, restrictions, owners, and rotation dates without exporting secret values. Production services should use organization-owned, least-privilege keys.

Instructions

  1. Inventory human roles, service identities, browser clients, environments, indices, and tenant boundaries.
  2. Capture current provider roles and SSO features from the account or contract, marking unavailable evidence.
  3. Map each actor to operations, ACLs, index restrictions, validity, and credential owner.
  4. Test denied and allowed operations using safe targets and redacted evidence.
  5. Document joiner, mover, leaver, key rotation, break-glass, and audit-review procedures.
  6. Identify excessive grants, orphaned credentials, or tenant escape paths and propose bounded remediation.

Approval Boundaries

Do not enable SSO, change team roles, revoke keys, or alter tenant filters without owner approval and a tested recovery path.

Output

Return the actor matrix, role and ACL mapping, current-plan evidence, denied-path tests, lifecycle controls, findings, and remediation approvals.

Error Handling

| Condition | Response | |---|---| | Feature absent from current account | Record it as unavailable; do not infer entitlement. | | Actor requires broad ACL | Split duties or document the exceptional grant. | | Secured key has no restriction | Reject generation. | | Role change risks lockout | Prepare and test break-glass access first. |

Examples

Use this compact input and expected handoff to calibrate scope and evidence quality.

Input:

actor=catalog-indexer; operations=save,settings; indices=products_*

Expected handoff:

key=custom; ACL=minimum-reviewed; tenant-browser=secured-key; sso=contract-verified

Resources

Related Skills

View on GitHub
GitHub Stars2.8k
CategoryDevelopment
Updated6d ago
Forks404

Languages

Python

Trust signals

100/100

From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.

No cautions