End-to-end Solana development playbook (Jan 2026). Prefer Solana Foundation framework-kit (@solana/client + @solana/react-hooks) for React/Next.js UI...
Follow further links only as needed. Paths are relative to this file.
Every install carries the core packs: solana-dev, auditor-skill, colosseum and anthropic-skills. The first three sit under ext/, which Claude Code does not auto-discover, so they cost nothing until a row here sends you into one; anthropic-skills installs top-level in skills/<name>/ and is listed every session, for about 102 tokens. The other ext/ packs are extensions: the kit pins them, and a project installs one when a task needs it. A row that links into an extension gives its install command; run it when the linked folder is missing (/update keeps what you install). The Extensions table at the end lists each one with when to use it.
The tables below answer "what do I read for this task". When the task instead suggests a pack this project has not installed — formal verification for program code, a design or animation pack for a landing page — skill-packs maps work to packs, add-ons included, and gives the rules for offering one.
When sources overlap: the program-code house rules in the project instruction file (CLAUDE.md, or AGENTS.md in --agents installs) win; a protocol's official skill wins for its own SDK (Jupiter, Metaplex, Helius, MagicBlock, Alchemy); ext/solana-dev wins for general Solana work; sendai and community skills fill gaps only.
| Task | Read |
|---|---|
| Any program, client or test work (entry point) | solana-dev SKILL.md |
| Anchor | programs/anchor.md; upgrading to 1.x: migrating-v0.32-to-v1.md |
| Pinocchio, CU optimization | programs/pinocchio.md |
| Account and PDA design | programs/design-patterns.md |
| Tests: LiteSVM, Mollusk, Surfpool | testing.md, surfpool/overview.md |
| Fuzzing a program with Trident (harness API, invariants) | solana-fuzz from belumume; run it as trident fuzz run fuzz_0 --with-exit-code -- without that flag a failing invariant is swallowed and the run exits 0 (install: bash .claude/bin/skills.sh add solana-fuzz) |
| Error codes, failing transactions | common-errors.md |
| Toolchain version pairing | compatibility-matrix.md |
| Security review | security.md, then auditor-skill for the audit itself (scope-gated checklists, 1,424 items; see Security tooling below) |
| Formal verification (Lean 4) | qedgen from QEDGen; needs the qedgen CLI, plus MISTRAL_API_KEY or ARISTOTLE_API_KEY depending on the command (install: bash .claude/bin/skills.sh add qedgen) |
| Port from Solidity/EVM | concept map: solana-vs-evm.md (install: bash .claude/bin/skills.sh add solana-new). The Solana Foundation's eth-to-sol skill carries the full type, pattern and stdlib mappings; the kit catalogues it as an add-on pointer in skill-registry.json rather than pinning it |
Anchor 1.x defaults this kit uses (not all spelled out upstream): SPL transfers through token_interface::transfer_checked, account space T::DISCRIMINATOR.len() + T::INIT_SPACE, Rust LiteSVM tests under programs/<name>/tests/ (anchor test runs Surfpool).
| Task | Read |
|---|---|
Wallet connection, React hooks, @solana/kit UI |
frontend.md |
| Transactions, Kit and web3.js boundary | kit-web3-interop.md |
| web3.js to Kit migration | solana-kit-migration/, solana-kit/ (install: bash .claude/bin/skills.sh add sendai) |
| Clients generated from an IDL (Codama, Shank) | idl-codegen.md |
| Payments, Solana Pay, Kora | payments.md |
| Official doc links | resources.md |
| Vercel, Next.js, AI SDK, v0 | ext/vercel/skills/ from Vercel (install: bash .claude/bin/skills.sh add vercel) |
| Brand identity and a design system for the client: shadcn theme, design tokens, UI critique, WCAG audit | get-shit-pretty (install: bash .claude/bin/skills.sh add get-shit-pretty) — designs the client, not the program; wire none of its own hooks.json or .mcp.json (see its registry safety) |
| UI design direction; Playwright tests of a local dApp | Anthropic's frontend-design/SKILL.md and webapp-testing/SKILL.md, core, so every install has them and loads them by description |
| Animation and motion on a landing page: timelines, scroll-driven effects, reduced-motion | gsap-core (official; install: bash .claude/bin/skills.sh add gsap-skills); also gsap-timeline, gsap-scrolltrigger, gsap-react (useGSAP), gsap-frameworks (Vue, Nuxt), gsap-plugins, gsap-utils, gsap-performance. Last moved 2026-04, so check its API against the current GSAP release |
| A real end-to-end browser suite: persistent sessions, multiple contexts, CI | playwright-skill (install: bash .claude/bin/skills.sh add playwright-skill). Use core webapp-testing for a one-off check; reach here when the suite has to live. Its run.js launches a real browser against whatever URL you give it, so a test pointed at production acts on production |
| Task | Read |
|---|---|
| Token-2022 extensions: pick, combine and create them (CLI, Kit, Anchor); fees, hooks, metadata, pausable, soulbound | token-extensions |
| Confidential transfers | confidential-transfers.md |
| NFTs: Core, Token Metadata, Bubblegum, Candy Machine, Umi | metaplex (official; install: bash .claude/bin/skills.sh add metaplex) |
| Task | Read |
|---|---|
| Jupiter swap, lend, perps, trigger, recurring | integrating-jupiter (official); also jupiter-lend, jupiter-swap-migration, jupiter-vrfd (install: bash .claude/bin/skills.sh add jupiter) |
| Helius RPC, DAS, webhooks, Sender, priority fees | helius (official; install: bash .claude/bin/skills.sh add helius) |
| SVM internals, consensus, validators, SIMDs | svm (install: bash .claude/bin/skills.sh add helius) |
| Alchemy RPC, DAS, Yellowstone gRPC; keyless x402 access | alchemy-api (official), agentic-gateway (install: bash .claude/bin/skills.sh add alchemy) |
| MagicBlock Ephemeral Rollups: delegated state, real-time apps and games, private payments, VRF, cranks | magicblock (official; install: bash .claude/bin/skills.sh add magicblock) |
| Concentrated-liquidity LP: track positions and fees, out-of-range alerts, IL-vs-HODL backtests, cross-DEX yield, confirm-gated rebalancing, tax lots | position-manager (Orca, Raydium, Meteora, Kamino; open one reference leaf per task; install: bash .claude/bin/skills.sh add position-manager-skill) |
| Meteora DBC launches, DAMM v1/v2 and DLMM pools, alpha and presale vaults, locks and vesting, M3M3 staking, zaps | meteora (official; install: bash .claude/bin/skills.sh add meteora-invent). Deeper than the sendai meteora folder below; its on-chain writes need a funded keypair and it asks for owner confirmation first |
| ZK compression: compressed PDAs and compressed tokens, and the cost model that makes them worth it | compressed-pda, compressed-token, zk, testing (official; install: bash .claude/bin/skills.sh add light-protocol). Last moved 2026-06, so check its SDK versions against the current crate |
| Historical or cross-chain analytics in DuneSQL: dashboards, decoded-table queries, Trino's departures from Postgres | dune (official; install: bash .claude/bin/skills.sh add dune). Answers questions over data someone else already decoded; an indexer is still the answer for your own program's state |
| USDC and stablecoin payments: agent wallets, CCTP bridging, Gateway, Arc, swaps, accepting payments | circle (official; install: bash .claude/bin/skills.sh add circle) — 18 skills. It moves real money: 11 of them describe fund movement, it reads CIRCLE_API_KEY/CIRCLE_ENTITY_SECRET and several private-key variables, and recover-eco-funds ships two Node scripts that simulate by default and sign only behind explicit flags. Point it at a testnet before anything else, and read agent-wallet-policy before granting an allowance |
| Memecoin research and due diligence: holder and wallet analysis, smart-money tracking, dev score, heat rank, narrative | gmgn (install: bash .claude/bin/skills.sh add gmgn) — 17 skills. Two of them submit trades: gmgn-token-buy vets and sizes a buy, then gmgn-swap executes it (buys, sells, limit orders, stop loss, take profit, multi-wallet batches). Use the research skills freely; treat the two execution skills as spending real funds, and note that gmgn-swap resolves no token names — only contract addresses — so a same-name copycat is a loss it cannot catch. A personal-account repo, not an organisation |
Other protocols from SendAI (install: bash .claude/bin/skills.sh add sendai): perps phoenix and leverage lavarage; AMMs raydium, meteora, orca; lending kamino, marginfi; LSTs sanctum; launches pumpfun; oracles pyth, switchboard; multisig squads; bridging debridge, lifi; encrypted compute arcium; ZK compression light-protocol; data birdeye, wallet-analysis; RPC carbium, quicknode; order book manifest; order flow dflow; account cleanup sol-incinerator; agents solana-agent-kit; wallets phantom-connect; scanning vulnhunter. SendAI's own jupiter, metaplex, helius and magicblock folders are older copies; the official skills above supersede them.
safe-ai-skill@stbr plugin): hooks gate mainnet, value-moving and authority actions and secret reads. At session start it pins skills and ext/ submodules and moves any that drift or look unsafe into quarantine, so a missing ext/ path may be quarantined rather than uninitialized. Its ask or deny is the user's policy, so don't retry the action another way. CLI (on PATH while the plugin is enabled, else npx @stbr/safe-ai-skill): status, verify check <dir>, registry list.vendor/trailofbits, which the installers do not fetch: the pack tests for the directory and falls back to its own grep-based discovery when it is absent, so treat that layer as absent unless you checked it. Installed packs are plain copies with no git metadata, so opting in means cloning it yourself at the commit skill-registry.json records in the entry's vendored field — and /update removes it again.verdict.json an agent can gate on. Offline and deterministic by default; --rpc adds ALT resolution, Squads v4 proposal decoding and Token-2022 extension screening. Also danger-catalog, decode-notes, verdict-contract (install: bash .claude/bin/skills.sh add sign-safe)bash .claude/bin/skills.sh add counterparty-gate)The three cover different questions: auditor-skill the program's source, sign-safe the transaction in front of you, counterparty-gate the people behind it.
deployment.md: devnet and mainnet flow, verifiable builds, Squads multisig upgrades, rollback
backend-async.md: Rust services and indexers that talk to Solana
MCP server for a program or API: Anthropic's mcp-builder, no longer in core. /plugin marketplace add anthropics/skills then /plugin install example-skills@anthropic-agent-skills — per-user, so it costs a project nothing
Cloudflare (install: bash .claude/bin/skills.sh add cloudflare): workers-best-practices, agents-sdk, sandbox-stable, durable-objects, wrangler
supabase (official; install: bash .claude/bin/skills.sh add supabase): the off-chain data layer — Postgres, Auth, Edge Functions, Realtime, Storage, the CLI, migrations and declarative schemas. For the database an indexer or webhook consumer writes into, supabase-postgres-best-practices is the one to open: query plans, connection pooling and exhaustion, partitioning, RLS policy performance, missing foreign-key indexes, SKIP LOCKED queues. Two things it does on its own: its SKILL.md fetches https://supabase.com/changelog.md whenever it loads, plus vendor docs at decision points, so a Supabase task always calls out to supabase.com; and skill-feedback.md can open a public GitHub issue on supabase/agent-skills built from the conversation. That step asks permission first; let the user answer it, since the issue body is their session.
huggingface-skills (official; install: bash .claude/bin/skills.sh add huggingface-skills): 25 skills for the AI/LLM side of a project — the hf CLI and Hub operations, Gradio and Spaces apps, ZeroGPU, fine-tuning (LLM, vision, TRL, sentence-transformers), evals and transformers.js. Machinery rather than prose — executables, a pipe-to-shell CLI installer, AWS IAM creation: read its registry safety before letting it near a cloud account, and wire none of its own .mcp.json.
mongodb (official; install: bash .claude/bin/skills.sh add mongodb), extension: the document store under an indexer — mongodb-schema-design, mongodb-query-optimizer, mongodb-connection, mongodb-search-and-ai (Atlas Search and vector search), mongodb-atlas-stream-processing. Pick it over supabase when the shape is documents rather than relations; duckdb stays the answer for files with no database at all. Its mongodb-mcp-setup skill points at mongodb-mcp-server@<3, which talks to whichever cluster its connection string names
redis (official; install: bash .claude/bin/skills.sh add redis), extension: the cache and queue on an RPC fan-out's hot path — redis-core, redis-connections (pooling and exhaustion), redis-clustering, redis-search, redis-semantic-cache (for LLM calls), redis-security, redis-observability
pulumi (official; install: bash .claude/bin/skills.sh add pulumi), extension: infrastructure-as-code in a real language, where the kit's own devops lane stops at CI and Cloudflare — pulumi-overview, pulumi-best-practices, pulumi-automation-api, pulumi-esc (secrets and config), pulumi-debug-failed-operation; migration lives under migration/skills (Terraform, CDK, ARM, CloudFormation). It drives the pulumi CLI against whatever cloud credentials the shell already holds, so pulumi up from here changes real infrastructure
resend (official; install: bash .claude/bin/skills.sh add resend), extension: transactional email a dApp needs for alerts, receipts and waitlists — resend, resend-cli, react-email, email-best-practices (deliverability), agent-email-inbox. RESEND_API_KEY sends as your domain, so a mistake lands in real inboxes under your own sending reputation — and agent-email-inbox has an agent read and reply to mail
google (official; install: bash .claude/bin/skills.sh add google), extension: 155 Google Cloud skills for the infrastructure under an indexer or RPC fleet — GKE autoscaling, compute classes and workload security, BigQuery (BigFrames, AI/ML functions, vector search), IAM troubleshooting and privileged access, Cloud Monitoring PromQL, Agent Platform deploy and tuning. Nothing on-chain. About 20 of its skills ship shell and Python under scripts/ that call gcloud, kubectl and bq against whichever project your ambient login points at — some read state, some change it, so check the active project before running one
duckdb (official; install: bash .claude/bin/skills.sh add duckdb), extension: SQL over files with no database to run — read-file (Parquet, CSV, JSON, Avro, Excel, Iceberg, Delta), query, attach-db, convert-file, s3-explore (S3, R2, GCS, Azure), spatial, duckdb-docs. Reach for it on an indexer's Parquet exports, an airdrop snapshot or a one-off aggregate over transaction dumps — supabase stays the answer when the data needs to live somewhere. Two notes: install-duckdb tells the user to pipe install.duckdb.org into a shell, which is their call and not the only route (Homebrew has it), and read-memories searches past Claude session logs on disk.
bash .claude/bin/skills.sh add solana-game): SKILL.md, unity-sdk.md, playsolana.md (PSG1, PlayDex, PlayID), game-architecture.md, mobile.md, csharp-patterns.mdbash .claude/bin/skills.sh add solana-mobile): solana-mobile-wallet (MWA 2.0), seeker-genesis-token, seeker-domainsbash .claude/bin/skills.sh add expo), extension: Expo's own 23 skills for everything solana-mobile does not cover — expo-overview routes them. Build and release: eas-workflows (CI), eas-app-stores, eas-update (OTA), eas-simulator, eas-hosting, eas-observe. Native and UI: expo-module (config plugins, native modules), expo-dev-client, expo-router, expo-ui, expo-brownfield, expo-upgrade. Use it with solana-mobile, not instead of it: MWA and Seeker live there, the build and release pipeline here. Wire none of its own hooks.json or .mcp.json — a pin leaves both inert, and its telemetry is opt-in and off by default only on the paths the registry safety records.npx @colosseum-org/copilot-connect status and, if that reports no connection, npx @colosseum-org/copilot-connect login (--device where no browser can open). Needs Node 20+. COLOSSEUM_COPILOT_PAT is a leftover from the retired v1 auth — don't read it or ask for one.bash .claude/bin/skills.sh add community-moderation)bash .claude/bin/skills.sh add frontend-slides), extension: the house format for decks, graphics and marketing material is HTML, and this is what builds it — 36 templates each with a design.md and preview.md, a selection index that maps a deck's intent to a template, style presets and animation patterns. pitch-deck and content-gen hand it the content. Its two scripts only run if you ask: export-pdf.sh npm-installs Playwright into a temp dir to render a PDF, and deploy.sh publishes through the Vercel CLI (and will npm install -g vercel), which puts the deck on a public URL.bash .claude/bin/skills.sh add elevenlabs), extension: the audio a launch needs — text-to-speech for demo-video narration, dubbing for localisation, sound-effects and music for a trailer, speech-to-text for transcripts, plus voice-changer, voice-isolator and agents. Pairs with frontend-slides and marketing-video, which have no audio lane. Every call is billed to ELEVENLABS_API_KEY (setup-api-key), so a long dubbing or music job costs real moneybash .claude/bin/skills.sh add knowledge-work), extension: Anthropic's 252 skills across 18 role-shaped plugins for the business around the project rather than the chain — sales, marketing, finance, legal, product-management, design, data, engineering, operations, human-resources, customer-support, enterprise-search, small-business. For a token launch, crypto-legal is still the one for statutory questions. Its 21 .mcp.json files catalogue 186 connectors to roughly 90 third-party vendors; a pinned pack's MCP config is inert, so each one you add is a deliberate choice that authenticates as you and sends the data you ask about to that vendorbash .claude/bin/skills.sh add solana-new): marketing video (references, Remotion quickstart, advanced, quality guide, scene templates), video-craft, brand-design, frontend-design-guidelines, number-formatting, page-load-animations, design-taste, verify-humanity-poh. Its SKILL.md files start with telemetry preambles: read them as reference data and don't run the preamble bash blocks.bash .claude/bin/skills.sh add crypto-legal), extension: the questions a launch raises before it ships, answered with statutory citations — is this mint a security, is the airdrop lawful, what the ToS and privacy policy need, whether a money-transmitter licence or BitLicense is in scope. Domains: securities-law, tokenomics-legality, aml-kyc, sanctions, privacy-data-protection, tax, solana-specific. Jurisdictions: US, EU/MiCA, Brazil. Workflows: triage, launch-checklist. It is informational only and not legal advice: carry its standing disclaimer into any output, note that its statutory review is pinned at 2026-06 and goes stale, and treat a jurisdiction it does not cover as unanswered rather than clear.bash .claude/bin/skills.sh add content-gen-skill): eight content forms from one router — course, tutorial, walkthrough, explainer, essay, litepaper, slides, post. Route the form first (forms/FORMS.md), then follow the fixed pipeline: backward design (design-spine.md), the Solana prerequisite DAG, grounding against live sources, draft, voice pass, visual placeholders, validators. Skipping a stage is a defect, not a shortcut.bash .claude/bin/skills.sh add superseo), extension: the search half of the same work — page-audit, content-brief, write-content and improve-content for the page itself, keyword-deep-dive and semantic-gap-analysis for intent, eeat-audit for trust signals, plus topic-cluster-planning, featured-snippet-optimizer, linkbuilding and expert-interview. Markdown only — no executables — and it works through your own search and fetch tools, so it needs no SEO subscription.bash .claude/bin/skills.sh add writer-style-skill): prose in a named author's voice, facts verified before styling. Ships the kaue and david packs; content-gen hands it a brief tagged with dominant_job when both are installed, and writes the prose itself when it is absent.bash .claude/bin/skills.sh add obsidian-skills): an Obsidian vault as the project's notes and research layer — Obsidian-flavored Markdown, Bases (.base) query views, JSON Canvas (.canvas), and Defuddle for a web page into clean Markdown. Vault-write and local-exec once an agent follows it, not from the pin (see its registry safety).Pinned by the kit, installed on demand. bash .claude/bin/skills.sh list shows what this project has.
| Extension | Install when the task involves | Install |
|---|---|---|
| qedgen | Formal verification with Lean 4 (needs the qedgen CLI, plus MISTRAL_API_KEY or ARISTOTLE_API_KEY) |
bash .claude/bin/skills.sh add qedgen |
| solana-fuzz | Trident fuzzing: the v0.12.0 harness API, invariant post-conditions, and the --with-exit-code flag a run needs in order to fail |
bash .claude/bin/skills.sh add solana-fuzz |
| sendai | DeFi and other protocols (Raydium, Orca, Meteora, Kamino, marginfi, Sanctum, Pyth, Switchboard, Squads, pump.fun, bridges), web3.js to Kit migration | bash .claude/bin/skills.sh add sendai |
| jupiter | Jupiter swap, lend, perps, trigger and recurring orders | bash .claude/bin/skills.sh add jupiter |
| metaplex | NFTs: Core, Token Metadata, Bubblegum, Candy Machine, Umi | bash .claude/bin/skills.sh add metaplex |
| magicblock | MagicBlock Ephemeral Rollups, real-time apps and games, private payments | bash .claude/bin/skills.sh add magicblock |
| helius | Helius RPC, DAS, webhooks, Laserstream, Sender, priority fees, SVM internals | bash .claude/bin/skills.sh add helius |
| alchemy | Alchemy RPC, DAS, Yellowstone gRPC, x402 gateway (ALCHEMY_API_KEY for the API skill) |
bash .claude/bin/skills.sh add alchemy |
| position-manager-skill | Concentrated-liquidity LP: positions, out-of-range alerts, IL backtests, rebalancing, tax lots | bash .claude/bin/skills.sh add position-manager-skill |
| solana-game | Unity, C#, games, PlaySolana, PSG1 | bash .claude/bin/skills.sh add solana-game |
| solana-mobile | React Native, Expo, Mobile Wallet Adapter, Seeker, dApp Store | bash .claude/bin/skills.sh add solana-mobile |
| crypto-legal | Legal and compliance before a launch: is the mint a security, is the airdrop lawful, ToS and privacy review, licensing, sanctions and KYC (US, EU/MiCA, Brazil; informational only, review pinned at 2026-06) | bash .claude/bin/skills.sh add crypto-legal |
| duckdb | Analysing or reporting on exported data — Parquet, CSV, JSON, Excel, Iceberg, buckets — with SQL and no database to stand up (its install step is a pipe-to-shell it asks you to run; read-memories reads past session logs) |
bash .claude/bin/skills.sh add duckdb |
| dune | Historical or cross-chain analytics in DuneSQL — dashboards and queries over decoded tables, and Trino's departures from Postgres | bash .claude/bin/skills.sh add dune |
| mongodb | A document store under an indexer: schema design, aggregation and query plans, Atlas Search and vector search, stream processing | bash .claude/bin/skills.sh add mongodb |
| redis | Caching, queues and rate-limit state on a hot path: pooling and exhaustion, clustering, Redis Search, semantic caching for LLM calls | bash .claude/bin/skills.sh add redis |
| light-protocol | ZK compression on Solana: compressed PDAs and compressed tokens, and the cost model that justifies them (last moved 2026-06 — check its SDK versions) | bash .claude/bin/skills.sh add light-protocol |
| meteora-invent | Meteora in depth: DBC launches, DAMM v1/v2 and DLMM pools, alpha and presale vaults, locks and vesting, M3M3 staking, zaps (on-chain writes need a funded keypair) | bash .claude/bin/skills.sh add meteora-invent |
| circle | USDC and stablecoin payments: agent wallets, CCTP bridging, Gateway, Arc, swaps, accepting payments. Moves real money and reads API keys and private-key variables — testnet first | bash .claude/bin/skills.sh add circle |
| gmgn | Memecoin research and due diligence: holder and wallet analysis, smart-money tracking, dev score, narrative. Two of its skills submit trades; gmgn-swap takes contract addresses only, never names |
bash .claude/bin/skills.sh add gmgn |
| resend | Transactional email for a dApp — alerts, receipts, waitlists — with React Email and deliverability practice (sends as your domain; agent-email-inbox replies to mail) |
bash .claude/bin/skills.sh add resend |
| pulumi | Infrastructure-as-code in a real language, past CI and Cloudflare: Automation API, ESC secrets, stack migration (drives the pulumi CLI against your live cloud credentials) |
bash .claude/bin/skills.sh add pulumi |
Google Cloud under an indexer or RPC fleet: GKE, BigQuery, IAM troubleshooting, PromQL, Agent Platform (about 20 skills ship scripts that call gcloud/kubectl/bq against your active project) |
bash .claude/bin/skills.sh add google |
|
| knowledge-work | The business around the project rather than the chain: 252 skills across 18 role plugins (sales, finance, legal, PM, support). Its 186 catalogued MCP connectors are inert until you add one | bash .claude/bin/skills.sh add knowledge-work |
| elevenlabs | Audio for a launch: demo-video narration, dubbing and localisation, sound effects, music, transcripts (every call is billed to your key) | bash .claude/bin/skills.sh add elevenlabs |
| gsap-skills | Animation and motion on a landing page or marketing site: timelines, ScrollTrigger, useGSAP, plugins, reduced-motion, performance (official GreenSock; last moved 2026-04) | bash .claude/bin/skills.sh add gsap-skills |
| playwright-skill | Browser automation and end-to-end webapp tests when webapp-testing from core is not enough — persistent sessions, multiple contexts, a real CI suite (individually authored; last moved 2026-08) |
bash .claude/bin/skills.sh add playwright-skill |
| expo | The Expo build and release pipeline beside solana-mobile: EAS Build, Update and Workflows, store submission, OTA, config plugins and native modules, expo-router, SDK upgrades (don't wire its hooks.json or .mcp.json) |
bash .claude/bin/skills.sh add expo |
| cloudflare | Cloudflare Workers, wrangler, Durable Objects, Agents SDK | bash .claude/bin/skills.sh add cloudflare |
| vercel | Vercel deploys, Next.js and React performance, web design review | bash .claude/bin/skills.sh add vercel |
| get-shit-pretty | Brand identity, a design system, shadcn themes and design tokens, UI polish, accessibility audits (designs the client, not the program; don't wire its hooks.json or .mcp.json) |
bash .claude/bin/skills.sh add get-shit-pretty |
| frontend-slides | Any slide deck, presentation, marketing graphic or social image — the kit builds these as HTML (36 templates; export-pdf.sh and deploy.sh run only when you ask) |
bash .claude/bin/skills.sh add frontend-slides |
| superseo | Making a landing page, docs page or post rank: SEO audit, keyword and intent research, content briefs, E-E-A-T, topic clusters, link building (markdown only, no executables, no paid data source) | bash .claude/bin/skills.sh add superseo |
| supabase | Supabase as the off-chain layer: Postgres schema, migrations and RLS, Auth, Edge Functions, Realtime, Storage; or tuning the database an indexer writes into (fetches supabase.com docs whenever it loads) | bash .claude/bin/skills.sh add supabase |
| solana-new | Go-to-market references: marketing video, brand design, tokenomics, DefiLlama research, ecosystem catalogs | bash .claude/bin/skills.sh add solana-new |
| sign-safe | Reviewing a transaction before it is signed: decode an opaque base64 tx, SIGN/HOLD/REJECT verdict, gating an agent's signing, Squads proposal review | bash .claude/bin/skills.sh add sign-safe |
| counterparty-gate | Vetting who operates a program, oracle, keeper or multisig before integrating (sends the addresses you ask about to SolSentry's API) | bash .claude/bin/skills.sh add counterparty-gate |
| community-moderation | Moderating a Telegram or Discord community and running member support: spam and drainer links, raids, impersonation, ticket triage | bash .claude/bin/skills.sh add community-moderation |
| content-gen-skill | Writing educational content: a course or curriculum, tutorial, explainer, essay, litepaper, slide spec or thread | bash .claude/bin/skills.sh add content-gen-skill |
| writer-style-skill | Writing prose in a named author's voice, or building a voice pack; content-gen hands it the brief | bash .claude/bin/skills.sh add writer-style-skill |
| obsidian-skills | An Obsidian vault as the notes layer: Obsidian Markdown, Bases query views, JSON Canvas, the obsidian CLI, Defuddle web-to-Markdown — vault-write and local-exec (see its registry safety) |
bash .claude/bin/skills.sh add obsidian-skills |
| huggingface-skills | Building an AI/LLM feature beside the program: the hf CLI and Hub, Gradio and Spaces, ZeroGPU, fine-tuning (TRL, sentence-transformers, LoRA), evals, transformers.js, SageMaker deploys — the one machinery pack (see its registry safety) |
bash .claude/bin/skills.sh add huggingface-skills |
skill-registry.json records each pack's tier, triggers, license and source. Its entries without a tier are opt-in skill packs, plugins, template repos and catalogs the kit doesn't pin; install one only when the user asks and safe-ai-skill add skill|mcp <source> returns proceed: true. It lists no MCP servers, because nothing here installs one: the default servers are in .mcp.json and the opt-in ones are commands /setup-mcp prints for the user to run. skill-packs indexes the useful entries by the work they suit (design, animation, iOS simulator, data visualization), so you don't have to read the whole registry to find one. Wider ecosystem catalogs: ext/solana-new/cli/data/ (install: bash .claude/bin/skills.sh add solana-new).