rest-api

rest-api is a skill for Claude Code, Codex from G1Joshi/Agent-Skills. It costs 18 tokens per session (711 once invoked), scanned A, original, MIT.

A guide to REST APIs, a common way for software systems to exchange data over HTTP. It explains resources, HTTP actions such as GET and POST, stateless requests, and response codes.

In plain words
What is it for?
Use it when building web endpoints for tasks such as listing, creating, updating, or deleting records. It also covers caching and links between related resources.
Why use it?
It helps you choose predictable API structures and communicate success, errors, and missing data clearly to clients.

Skill for Claude CodeCodex

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add skills/g1joshi/agent-skills/rest-api
Any agent
npx skills add G1Joshi/Agent-Skills --skill rest-api
Clone the repo
git clone --depth 1 https://github.com/G1Joshi/Agent-Skills

Made for: Claude Code, Codex.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for rest-api

README.md
[![agentmods](https://agentmods.dev/badge/skills/g1joshi/agent-skills/rest-api.svg)](https://agentmods.dev/skills/g1joshi/agent-skills/rest-api)
Your own site
<a href="https://agentmods.dev/skills/g1joshi/agent-skills/rest-api"><img src="https://agentmods.dev/badge/skills/g1joshi/agent-skills/rest-api.svg" alt="Measured on agentmods" height="20"></a>
Per session 18 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 711 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00018 $0.00711
Opus 5 $0.00009 $0.00356
Sonnet 5 $0.00004 $0.00142
Haiku 4.5 $0.00002 $0.00071

Measured 5d ago against content hash a218853edb3b, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

rest-api scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 5d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

skills/architecture/rest-api/SKILL.md · 91 lines

How it starts

The opening of the file, as written. The whole thing — 91 lines — stays where its author put it; the contents beside it link to each section on GitHub.

REST API

Representational State Transfer (REST) is the architectural style for distributed hypermedia systems. It relies on stateless, client-server, cacheable communications protocols (mostly HTTP).

When to Use

  • Public APIs: The universal standard; easiest for 3rd parties to consume.
  • Simple Resource Access: Perfect for CRUD (Create, Read, Update, Delete) operations.
  • Caching: When you need to leverage HTTP caching (CDNs, Browsers).

Quick Start

// Express.js Example
app.get("/users/:id", async (req, res) => {
  const user = await db.find(req.params.id);
  if (!user) return res.status(404).json({ error: "Not Found" });

  // HATEOAS (Hypermedia As The Engine Of Application State) - optional but "True REST"
  res.json({
    ...user,
    links: {
      self: `/users/${user.id}`,
      orders: `/users/${user.id}/orders`,
    },
  });
});

Core Concepts

Resources

Everything is a resource identified by a URI (/users/123).

HTTP Verbs

Use verbs to define actions, not URIs.

  • GET /orders (List)
  • POST /orders (Create)
  • PATCH /orders/1 (Update partial)
  • DELETE /orders/1 (Remove)

Statelessness

Each request must contain all information necessary to understand the request. The server accepts no session state.

Common Patterns

Filtering, Sorting, Pagination

Standard query params: ?sort=-created_at&limit=10&page=2&status=active.

Versioning

  • URI Versioning: /v1/users (Most common).
  • Header Versioning: Accept: application/vnd.myapi.v1+json.

Best Practices

Do:

  • Use proper HTTP Status Codes (200 OK, 201 Created, 400 Bad Request, 401 Unauthorized, 403 Forbidden, 404 Not Found, 500 Server Error).
  • Use Snake Case (user_id) in JSON responses (standard convention) or camelCase if consistent with JS ecosystem.
  • Implement Rate Limiting to protect resources.

Don't:

  • Don't use GET for state-changing operations.
  • Don't return 200 OK for errors (e.g., { "error": "failed" } with status 200).
  • Don't expose database IDs if possible (use UUIDs).

Read the full file on GitHub · 91 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 5d ago First seen · 91 lines · 18 tokens per session scan A a218853edb3b

Subscribe to this mod's changes

rest-api is a skill published in the GitHub repository G1Joshi/Agent-Skills (12 stars, last pushed 6mo ago), licensed MIT. It adds 18 tokens to every session and 711 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.

Related

Other skills, from other repositories

image-describe

Describe the contents of an image file or URL in structured detail.

n24q02m/imagine-mcp · 16 tokens

pake

Package any website or local web build into a lightweight desktop app using Pake (Tauri/Rust). Use when the user wants to: wrap a URL as a native app, build a desktop app from a website or a local dist/ folder, use Pake CLI to package a page, set up proxy for a packaged app, customize app icons or bundle IDs, or…

tw93/Pake · 119 tokens

ux

LobeHub product design values / principles / checklists. Use whenever the work touches user-interface features or implementation — designing or building any user-facing flow — to get better UX results.

lobehub/lobehub · 39 tokens

agent-work

Agent Work registry (works / workversions): how agent outputs — github/linear entities, files, documents, tasks — get registered, deduped, and rendered as cards, and how to extend it with a new skill provider, a new shell CLI scanner, or a new Work type.

lobehub/lobehub · 62 tokens

skills-audit

Audit .agents/skills SKILL.md files. Use for recurring checks of duplicate, overlapping, stale, inconsistent, or broken skills and merge/delete candidates.

lobehub/lobehub · 35 tokens

ponytail-lazy-senior-dev

Applies the "lazy senior developer" mindset. Use this skill whenever generating, modifying, reviewing code, or fixing bugs to prioritize code reuse, minimalism, YAGNI principles, and root-cause fixes. Also use whenever the user says "ponytail", "be lazy", "lazy mode", "simplest solution", "minimal solution", "yagni"…

GulajavaMinistudio/awesome-copilot-id · 146 tokens