Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add skills/backant-io/jerrycan/docsnpx skills add backant-io/jerrycan --skill docsgit clone --depth 1 https://github.com/backant-io/jerrycanWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00092 | $0.05530 |
| Opus 5 | $0.00046 | $0.02765 |
| Sonnet 5 | $0.00018 | $0.01106 |
| Haiku 4.5 | $0.00009 | $0.00553 |
Grade A, and why
jerrycan-backend scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
This is a copy
100% identical to jerrycan-backend — 0 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.
How it starts
The opening of the file, as written. The whole thing — 344 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Building a backend with jerrycan
jerrycan turns a single declarative design.json into a working, tested,
multi-tenant REST backend: it generates the data layer (SeaORM models, dual-dialect
migrations, CRUD repos), typed handler stubs, tenant guards + isolation tests,
acceptance tests, OpenAPI, and app wiring. You (the agent) author the design and
fill in the handler bodies; jerrycan check is the source of truth for "done."
This skill is a guided process. Work through the phases in order. At each
decision point, ask the user — do not guess. Checkpoint after every phase so
neither of you loses the thread. The docs are complete and accurate (jerrycan docs --list); read the relevant page before each step rather than guessing an API.
The golden rules
- Never guess what to build. If you don't know an entity, a field, a status value, an endpoint, a role, or a behavior — ask. One question at a time.
jerrycan checkand the validator are the truth. Loop them; never claim green you haven't seen. Never weaken a generated check to pass it. But a few generated tests are un-greenable BY CONSTRUCTION (a happy-path probe that posts no credential to a login/webhook/API-key endpoint). For those,checkwill not be fully green and that is correct — recognize them (see Phase 5), leave them, and move on; do NOT thrash trying to green them or weaken the handler.- Read the doc page before using a feature.
jerrycan docs <page>/jerrycan explain <CODE>. Start every project by readingjerrycan docs designing. - Flag scope walls EARLY (Phase 2). If the user needs something jerrycan can't express, surface it before you design, and decide together how to handle it.
- Checkpoint after each phase: restate what's decided and what's next.
Phase 0 — Orient (once)
- Confirm jerrycan is available:
jerrycan --version(build it if you're in the framework repo:cargo build -p jerrycanthen usetarget/debug/jerrycan). jerrycan docs --listto see the page index. Readjerrycan docs designingnow — it is the completedesign.jsonreference (every field, type, constraint, and the gotchas). You will author the design from it.- Announce: "I'll use the jerrycan-backend process to design and build this step by step, checking with you at each decision."
What ships with it
60 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
- ai/00-designing.md 29 KB
- ai/01-app.md 12 KB
- ai/02-modules.md 4.8 KB
- ai/03-extractors.md 9.4 KB
- ai/04-dependencies.md 4.2 KB
- ai/05-errors.md 5.4 KB
- ai/06-middleware.md 9.7 KB
- ai/07-testing.md 6.2 KB
- ai/08-database.md 19 KB
- ai/09-validation.md 2.5 KB
- ai/10-auth.md 16 KB
- ai/11-observability.md 1.6 KB
- ai/12-packaging.md 4.3 KB
- ai/13-error-codes.md 2.9 KB
- ai/14-tenancy.md 30 KB
- ai/15-jobs.md 12 KB
- ai/16-auth-advanced.md 14 KB
- ai/17-response-types.md 7.5 KB
- ai/18-realtime.md 10 KB
- ai/18-storage.md 5.7 KB
- ai/19-migrate-supabase.md 3.8 KB
- ai/20-designing-examples.md 9.8 KB
- assets/jerrycan-icon-dark.svg 897 B
- assets/jerrycan-icon.svg 897 B
- assets/jerrycan-wordmark-dark.svg 3.8 KB
- assets/jerrycan-wordmark.svg 3.8 KB
- benchmarks.md 650 B
- contracts/cli-ux.md 4.1 KB
- contracts/db-schema.json 3.8 KB
- contracts/design-schema.json 27 KB
- contracts/mcp-tools.json 12 KB
- contracts/threat-model.md 25 KB
- github-sponsors-tiers.md 2.2 KB
- marketing/jerrycan-6-month-launch-calendar.md 11 KB
- marketing/jerrycan-cc-design-handoff.md 9.8 KB
- marketing/jerrycan-launch-strategy.md 13 KB
- phase1-backlog.md 2.1 KB
- start.md 1.1 KB
- superpowers/plans/2026-06-09-phase0-contracts.md 131 KB
- superpowers/plans/2026-06-10-phase1-core-loop.md 157 KB
- superpowers/plans/2026-06-10-phase1b-hardening.md 59 KB
- superpowers/plans/2026-06-10-phase2-data-tdd.md 107 KB
- superpowers/plans/2026-06-10-phase3-production.md 105 KB
- superpowers/plans/2026-06-10-phase4-hardening.md 60 KB
- superpowers/plans/2026-06-11-jerrycan-v2.0-data-foundation.md 45 KB
- superpowers/plans/2026-06-11-jerrycan-v2.0b-core-readiness.md 22 KB
- superpowers/plans/2026-06-11-jerrycan-v2.1-protocol-surface.md 95 KB
- superpowers/plans/2026-06-12-jerrycan-v2.2-middleware-kit.md 67 KB
- superpowers/plans/2026-06-14-jerrycan-v2.3-jobs.md 53 KB
- superpowers/plans/2026-06-15-jerrycan-v2.3b-redis-jobs.md 9.4 KB
- superpowers/plans/2026-06-15-jerrycan-v2.4-auth-expansion.md 16 KB
- superpowers/plans/2026-06-15-jerrycan-v2.5-eval-gate.md 11 KB
- superpowers/plans/2026-06-23-jerrycan-deploy-render.md 40 KB
- superpowers/plans/2026-07-11-jerrycan-migrator-implementation.md 130 KB
- superpowers/plans/2026-07-11-jerrycan-realtime-implementation.md 172 KB
- superpowers/plans/2026-07-11-jerrycan-storage-implementation.md 184 KB
- superpowers/plans/2026-07-15-agent-eval-fixes.md 15 KB
- superpowers/plans/2026-07-15-heavy-testing-ci-tiers.md 26 KB
- superpowers/plans/2026-07-16-eval-round2-fixes.md 10 KB
- superpowers/plans/2026-07-17-v041-goal.md 3.8 KB
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 344 lines · 92 tokens per session scan A db0b2d3b0cb2
jerrycan-backend is a skill published in the GitHub repository backant-io/jerrycan (9 stars, last pushed 22d ago), licensed MIT. It adds 92 tokens to every session and 5,530 once invoked, about $0.0005 per session on Opus 5. A static security scan graded it A with 0 findings. It is 100% identical to jerrycan-backend, differing in 0 lines, and is treated as a copy.
Other skills, from other repositories
systematic-debugging
Use when encountering any bug, test failure, or unexpected behavior, before proposing fixes.
brainstorming
You MUST use this before any creative work - creating features, building components, adding functionality, or modifying behavior. Explores user intent, requirements and design before implementation.
auto-perf-optimize
Run agent-driven VS Code performance or memory investigations. Use when asked to launch Code OSS, automate a VS Code scenario, run the Chat memory smoke runner, capture renderer heap snapshots, take workflow screenshots, compare run summaries, or drive a repeatable scenario before heap-snapshot analysis.
chat-perf
Run chat perf benchmarks and memory leak checks against the local dev build or any published VS Code version. Use when investigating chat rendering regressions, validating perf-sensitive changes to chat UI, or checking for memory leaks in the chat response pipeline.
chat-pet-sprite-creation
Use when creating or changing VS Code chat pet sprite art, sprite sheets, state animations, eye treatments, Stable/Insiders variants, or pet transitions under src/vs/workbench/contrib/chat/browser/widget/media/chatPet.
cpu-profile-analysis
Analyze V8/Chrome CPU profiles (.cpuprofile) and DevTools trace files (Trace-.json). Use when: profiling performance, investigating slow functions, comparing code paths, finding bottlenecks, analyzing timeToRequest, understanding call trees from sampling profiler data, analyzing layout/paint/rendering, investigating…