SkillAgentSearch skills...

algolia-install-auth

Install and verify the Algolia JavaScript v5 client with least-privilege credential separation

Install / Use

npx skills add jeremylongshore/tons-of-skills-marketplace --skill algolia-install-auth

Installs into whichever agent you are using.

About this skill
📄

SKILL.md

Installable skill definition

Quality Score

85/100

Supported Platforms

Claude Code

Our assessment of algolia-install-auth

algolia-install-auth scores 85/100 on our quality scale, 1754th of 3,845 Development & Engineering skills we index (top 46%).

Its SKILL.md is 3.9 KB long, well organised into 12 sections with 2 code examples: a solid amount of guidance for an agent.

With 2,785 GitHub stars, it is one of the more widely adopted skills in the catalogue.

Substance
26/30
Structure
18/20
Description
12/15
Adoption
15/20
Freshness
15/15

Maintenance, license and trust

  • The repository was last updated 6 days ago, so algolia-install-auth is actively maintained.
  • It is released under the MIT license, a permissive license that allows use, modification and commercial use with attribution.
  • Its trust signals score 100/100, with no cautions. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.

algolia-install-auth compared with similar skills

All 4 of these similar skills score higher than algolia-install-auth; compare them before choosing.

SkillScoreStarsUpdatedFormat
algolia-install-auth (this skill)by jeremylongshore852.8k6d agoSKILL.md
Agent-Reachby Panniantong10086.3k14d agoCLAUDE.md
headroomby headroomlabs-ai10074.1ktodayCLAUDE.md
ai-job-searchby MadsLorentzen10044.5ktodayCLAUDE.md
claude-howtoby luongnv8910041.7k4d agoCLAUDE.md

Frequently asked questions

How do I install algolia-install-auth?
Run npx skills add jeremylongshore/tons-of-skills-marketplace --skill algolia-install-auth. The install tabs above show the steps for each supported agent.
Which AI agents does algolia-install-auth work with?
It is written for Claude Code, as a SKILL.md file. Other agents that read the same format can often use it too.
Is algolia-install-auth safe to use?
It is MIT-licensed and scores 100/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
Is algolia-install-auth still maintained?
The repository was last updated 6 days ago, so algolia-install-auth is actively maintained.

name: algolia-install-auth description: >- Install and verify the Algolia JavaScript v5 client with least-privilege credential separation. Use when bootstrapping a backend, browser search client, or environment configuration. Trigger with "install Algolia", "configure Algolia auth", or "Algolia API key setup". argument-hint: "[project-path] [runtime]" allowed-tools: Read, Glob, Grep, WebFetch, Write, Edit version: 1.8.0 author: Jeremy Longshore jeremy@intentsolutions.io license: MIT tags:

  • saas
  • algolia
  • authentication model: inherit effort: medium compatibility: Designed for Claude Code

Algolia Install and Authentication

Overview

This skill establishes the package and credential boundary before feature work. It distinguishes the application ID from API keys and separates browser search from trusted write operations.

Prerequisites

  • A named repository, environment, and Algolia application or index in scope
  • The local lockfile and installed client types as implementation authority
  • A safe read-only query or explicitly disposable test target
  • Current first-party documentation for any provider behavior that affects the change

Tool Discipline

Use Read, Glob, and Grep to inspect local code, configuration names, tests, and dependency versions. Use WebFetch only for current official Algolia documentation. Use Write or Edit only after identifying the target files, constraints, and verification plan.

Current Contract

  • Inspect and follow the repository's package manager and lockfile rather than installing an unpinned latest package.
  • Use algoliasearch v5 imports and client-level methods; do not introduce the removed initIndex pattern.
  • Expose only a search-only or appropriately secured key in browser configuration.
  • Use custom keys with minimum ACLs and index restrictions for backend jobs.

Authentication

Load credentials through the repository's approved secret mechanism. Never print values, commit .env files, or use the Admin key as the default backend credential.

Instructions

  1. Inspect runtime, package manager, lockfile, existing wrappers, and environment conventions.
  2. Select a compatible pinned v5 version and add it through the native package workflow.
  3. Define separate environment names for application ID, browser search key, and server write key.
  4. Create one client factory per trust boundary and reject missing configuration without echoing values.
  5. Verify browser search with a read-only query and backend writes only against a disposable index.
  6. Scan built assets and source history for accidental write-key exposure.

Approval Boundaries

Do not install dependencies, create provider keys, alter secret stores, or rotate existing credentials outside the repository and account scope provided.

Output

Return the dependency diff, client factories, environment-name contract, key/ACL matrix, verification results, secret-scan evidence, and remaining setup actions.

Error Handling

| Condition | Response | |---|---| | v4 API appears in code | Use the official v5 migration guide before mixing patterns. | | Key rejected | Verify application pairing, ACL, restriction, and environment. | | Write key enters browser build | Stop, remove it, and rotate if exposed. | | No safe test index | Limit verification to read-only search. |

Examples

Use this compact input and expected handoff to calibrate scope and evidence quality.

Input:

runtime=node; package-manager=pnpm; client-major=5; browser=search-only

Expected handoff:

read-check=pass; write-check=disposable-index-only; exposed-write-key=none

Resources

Related Skills

View on GitHub
GitHub Stars2.8k
CategoryDevelopment
Updated6d ago
Forks404

Languages

Python

Trust signals

100/100

From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.

No cautions