extension-oql
82Expose Canister Data Through OQL
Structured canister data is difficult for intelligence agents to query safely. This skill adds OQL entities, schema discovery, query execution, relationships, and per-entity authorization.
Build Role-Based Authorization for Caffeine AI
Applications need consistent authentication and role checks across Motoko backends and React frontends. This skill provides Caffeine AI patterns for protected endpoints, profiles, login state, and migrations.
Stop for confirmation before installing.
Review the plan and obtain explicit user consent before changing files.
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "extension-authorization" from https://skillstore.io/skills/caffeinelabs-extension-authorization.md and its manifest at https://skillstore.io/api/skills/caffeinelabs-extension-authorization/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.Your Agent should still show its plan and request any confirmation required by the security policy.
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Using "extension-authorization". Add authorization to an application where users edit their own records and administrators manage every record.
Expected outcome:
Using "extension-authorization". Upgrade an existing application and store the verified email after sign-in.
Expected outcome:
All 67 static findings are false positives caused by Markdown, code examples, relative links, imports, or descriptive identity text. No external command execution, path traversal, reconnaissance, or runtime network request is present. A separate high-severity bootstrap risk allows the first authenticated user to become administrator without prior authorization.
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
https://skillstore.io/skills/caffeinelabs-extension-authorization/audits/3?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report[](https://skillstore.io/skills/caffeinelabs-extension-authorization?utm_source=security_passport_badge)<a href="https://skillstore.io/skills/caffeinelabs-extension-authorization?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/caffeinelabs-extension-authorization/security.svg" alt="Skillstore security assessment" loading="lazy"></a><iframe src="https://skillstore.io/embed/skills/caffeinelabs-extension-authorization.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>caffeinelabs. (2026). extension-authorization security audit report (audit version 3) [Author version 1.0.0]. Skillstore. https://skillstore.io/skills/caffeinelabs-extension-authorization/audits/3@techreport{caffeinelabs-caffeinelabs-extension-authorization-2026,
author = {caffeinelabs},
title = {extension-authorization security audit report (audit version 3)},
institution = {Skillstore},
year = {2026},
number = {3},
url = {https://skillstore.io/skills/caffeinelabs-extension-authorization/audits/3},
note = {Author version 1.0.0}
}cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "extension-authorization security audit report (audit version 3)"
version: "1.0.0"
type: report
authors:
- name: "caffeinelabs"
date-released: "2026-07-23"
url: "https://skillstore.io/skills/caffeinelabs-extension-authorization/audits/3"
identifiers:
- type: other
value: "skillstore:caffeinelabs-extension-authorization:audit:3"
description: "Skillstore immutable audit report identifier"
Add standard roles, guarded Motoko endpoints, profiles, and Internet Identity login to a new application.
Coordinate restored sessions, login progress, profile setup, logout, and cached data in a React interface.
Migrate authorization and core infrastructure packages while adopting the verified attribute callback.
Add Caffeine AI authorization to my application. Create administrator, user, and guest access with guarded backend endpoints.
Implement user profiles with owner and administrator access. Include profile setup after login and clear cached profile data during logout.
Migrate my existing authorization integration from version 0.x to 1.x. Update dependencies and add the optional verified attribute callback.
Review my Motoko and React authorization flow. Identify missing role checks, ownership checks, session-state errors, cache leaks, and administrator bootstrap risks.
Author
caffeinelabsLicense
MIT
Author version
v1.0.0
Skillstore revision
r2
Ref
a39a91716eadede5f4cdefd78178fed4e837a128
Maintenance freshness
7/24/2026
Usage
0 downloads ยท 0 views
File structure
Expose Canister Data Through OQL
Structured canister data is difficult for intelligence agents to query safely. This skill adds OQL entities, schema discovery, query execution, relationships, and per-entity authorization.
Build TMDb Movie and TV Features
Movie and TV integrations often fail because generated clients hide authentication, response shapes, and unsupported operations. This skill gives Caffeine developers a tested implementation path for catalog reads, credential handling, and service limits.
Troubleshoot Motoko Migration Failures
Motoko migration errors can conflict with current source code and put deployed state at risk. This reference explains diagnostics and forward-only repairs while preserving migration history.
Add User Approval to Caffeine AI Apps
Applications need a controlled process for granting access to protected features. This skill guides backend approval checks, admin decisions, and frontend approval workflows.
Query OQL Canisters with the ICP CLI
Writing OQL queries requires exact schema names, JSON types, Candid escaping, and careful pagination. This skill provides practical patterns for reliable, read-only canister queries.
Add Object Storage to Caffeine AI Apps
Large files need storage beyond Internet Computer canister limits. This skill guides Caffeine AI projects through backend integration, browser uploads, cached display, downloads, and troubleshooting.
Build Fullstack Apps With Senior Guidance
by alirezarezvani
Fullstack projects often need consistent setup, architecture choices, and quality checks. This skill provides scripts and references for React, Next.js, Node.js, GraphQL, and PostgreSQL work.
Build Type-Safe React Components
by softaworks
React TypeScript work often needs precise event, hook, and route types. This skill provides focused patterns for typed components, React 19 APIs, and routing.
Implement React View Transitions
by vercel-labs
React view transitions are easy to misplace, causing silent or noisy animations. This skill guides route, Suspense, list, and shared element animation choices.
Build Frontend Apps Faster
by davila7
Frontend work often needs consistent React patterns, performance checks, and project scaffolding. This skill gives Claude and compatible agents practical guidance and local helper scripts for modern web application development.
Optimize Next.js Performance
by Atman36
Next.js applications can become slow through large bundles, weak caching, and unoptimized media. This skill guides Claude, Codex, and Claude Code through focused performance improvements for production apps.
Optimize React and Next.js Code
by vercel-labs
React and Next.js applications often lose performance through waterfalls, large bundles, and avoidable re-renders. This skill gives Claude, Codex, and Claude Code concrete review rules for faster frontend work.