auth-nodejs-cloudbase
82Build CloudBase Node Auth Flows
Server-side CloudBase auth work can mix caller identity, user lookup, and custom login details. This skill guides Node.js agents through correct SDK methods and secure backend patterns.
Plan Complex Coding Changes
Large coding changes often fail when scope, design, and acceptance criteria are vague. This skill guides Claude, Codex, and Claude Code through requirements, design, tasks, and staged confirmation.
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "spec-workflow" from https://skillstore.io/skills/tencentcloudbase-spec-workflow.md and its manifest at https://skillstore.io/api/skills/tencentcloudbase-spec-workflow/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.Your Agent should still show its plan and request any confirmation required by the security policy.
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Using "spec-workflow". Plan a booking workflow with unclear validation rules.
Expected outcome:
Using "spec-workflow". Prepare a refactor that touches authentication, billing, and notifications.
Expected outcome:
All static findings appear to be false positives caused by Markdown code fences, inline code, literal URLs, and sibling skill references. No evidence of command execution, arbitrary filesystem access, network exfiltration, prompt injection, or malicious intent was found in SKILL.md.
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
https://skillstore.io/skills/tencentcloudbase-spec-workflow/audits/2?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report[](https://skillstore.io/skills/tencentcloudbase-spec-workflow?utm_source=security_passport_badge)<a href="https://skillstore.io/skills/tencentcloudbase-spec-workflow?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/tencentcloudbase-spec-workflow/security.svg" alt="Skillstore security assessment" loading="lazy"></a><iframe src="https://skillstore.io/embed/skills/tencentcloudbase-spec-workflow.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>tencentcloudbase. (2026). spec-workflow security audit report (audit version 2) [Author version 2.23.8]. Skillstore. https://skillstore.io/skills/tencentcloudbase-spec-workflow/audits/2@techreport{tencentcloudbase-tencentcloudbase-spec-workflow-2026,
author = {tencentcloudbase},
title = {spec-workflow security audit report (audit version 2)},
institution = {Skillstore},
year = {2026},
number = {2},
url = {https://skillstore.io/skills/tencentcloudbase-spec-workflow/audits/2},
note = {Author version 2.23.8}
}cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "spec-workflow security audit report (audit version 2)"
version: "2.23.8"
type: report
authors:
- name: "tencentcloudbase"
date-released: "2026-07-09"
url: "https://skillstore.io/skills/tencentcloudbase-spec-workflow/audits/2"
identifiers:
- type: other
value: "skillstore:tencentcloudbase-spec-workflow:audit:2"
description: "Skillstore immutable audit report identifier"
Each author remains a separate installable skill. The recommended variant is ranked by Skillstore evidence.
Why this variant is first
tencentcloudbase-spec-workflow
2026-08-21
clionegohan-spec-workflow
2026-08-21
Turn an unclear feature request into user stories, acceptance criteria, non-goals, and review checkpoints.
Map architecture decisions, module boundaries, testing needs, and implementation tasks before code changes begin.
Clarify user flows, design intent, data needs, and task sequencing for complex interface work.
Use spec-workflow to plan a new feature. First ask any missing scope questions, then draft requirements with EARS acceptance criteria.
Use the confirmed requirements to create a design document. Include architecture, module boundaries, data flow, security notes, and test strategy.
Convert the approved design into an implementation plan. Keep each task reviewable and link tasks back to requirements.
Guide this medium-sized change through requirements, design, task planning, and execution. Stop for confirmation before each phase transition.
Author
tencentcloudbaseLicense
MIT
Author version
v2.23.8
Skillstore revision
r1
Ref
24b2fe42a456262f3fd0fb3df72e12d9ed2c32ec
Maintenance freshness
7/18/2026
Usage
1 downloads ยท 0 views
File structure
๐ SKILL.md
Build CloudBase Node Auth Flows
Server-side CloudBase auth work can mix caller identity, user lookup, and custom login details. This skill guides Node.js agents through correct SDK methods and secure backend patterns.
Build CloudBase Mini Program Database Features
Mini Program database work requires correct SDK patterns and security rules. This skill guides Claude, Codex, and Claude Code through CloudBase document database tasks.
Build CloudBase AI Backends in Node.js
Backend AI setup often fails when model groups, credits, and SDK methods are guessed. This skill gives CloudBase Node.js patterns, preflight checks, and model enablement steps.
Design Distinctive UI Prototypes
Generic AI interfaces often lack visual direction and platform-aware detail. This skill guides Claude, Codex, and Claude Code to define design intent before building prototypes.
Add CloudBase AI Models to Web Apps
Browser AI integration can fail when model groups, auth, or Token Credits are not prepared. This skill guides CloudBase preflight, model enabling, and SDK calls for web apps.
Build WeChat Mini Program AI Calls
WeChat Mini Program AI setup has provider, billing, and streaming differences that are easy to misconfigure. This skill guides Claude, Codex, or Claude Code through CloudBase preflight checks and wx.cloud.extend.AI usage.
Design Software Architectures with Senior Guidance
by davila7
Architecture choices are hard to compare across product, scale, security, and team constraints. This skill gives structured guidance, references, and helper scripts for clearer decisions.
Manage Requirement Changes Safely
by yunshu0909
Requirement changes often expand across files without clear approval points. This skill gives Claude, Codex, and Claude Code a gated workflow for scope, impact, validation, and documentation.
Structure AI Development With Specs
by 89jobrien
Complex AI-assisted projects can lose clarity before implementation starts. This skill guides teams through phased specifications, governance, planning, analysis, and task execution.
Enforce Waterfall Phase Gates
by Chemiseblanc
AI coding sessions can skip requirements, design, or testing when pressure rises. This skill keeps work inside a strict waterfall flow with documented gates.
Manage Coding Agent Workflows
by kiwi-phantomworks
Coding-agent projects can drift when tasks, scope, and checks are vague. This skill gives PM templates and review rules that keep Claude, Codex, and Claude Code work bounded and verifiable.
Analyze Your Codebase with a Structured Review
by Atman36
Large repositories hide architecture, dependency, and quality risks. This skill produces a structured map, focused checks, and prioritized recommendations.