cloudkit-sync

cloudkit-sync is a skill for Claude Code from markdavidgan/apple-dev-skills. It costs 94 tokens per session (5,042 once invoked), scanned B, original, MIT.

A guide for syncing SwiftData or Core Data app data between a user's Apple devices with CloudKit, Apple's iCloud data service. It also covers sharing records with other users and handling conflicting edits.

In plain words
What is it for?
Use it when adding multi-device sync, CloudKit sharing, or conflict handling to an iPhone, iPad, or Mac app.
Why use it?
Adding iCloud sync requires specific project capabilities, data-model rules, and background notifications. This helps avoid common build and synchronization problems caused by those requirements.

Skill for Claude Code

Written for Claude Code: shipped in a Claude Code plugin.

Part of the apple-dev-skills plugin — 62 skills, 25 commands, 7 agents shipped together

Good fit Use it when adding multi-device sync, CloudKit sharing, or conflict handling to an iPhone, iPad, or Mac app.

Compare 6 skills from other repositories ↓
Install with agentmods
npx agentmods add skills/markdavidgan/apple-dev-skills/cloudkit-sync
Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

Any agent
npx skills add markdavidgan/apple-dev-skills --skill cloudkit-sync
Clone the repo
git clone --depth 1 https://github.com/markdavidgan/apple-dev-skills

Made for: Claude Code.

Or install apple-dev-skills, the plugin that ships this one along with the rest of its 62 skills, 25 commands, 7 agents.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for cloudkit-sync

README.md
[![agentmods](https://agentmods.dev/badge/skills/markdavidgan/apple-dev-skills/cloudkit-sync/github.svg)](https://agentmods.dev/skills/markdavidgan/apple-dev-skills/cloudkit-sync)
Your own site
<a href="https://agentmods.dev/skills/markdavidgan/apple-dev-skills/cloudkit-sync"><img src="https://agentmods.dev/badge/skills/markdavidgan/apple-dev-skills/cloudkit-sync/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for cloudkit-sync

Your own site · 80×15
<a href="https://agentmods.dev/skills/markdavidgan/apple-dev-skills/cloudkit-sync"><img src="https://agentmods.dev/badge/skills/markdavidgan/apple-dev-skills/cloudkit-sync.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 94 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 5,042 The whole file, excluding the scripts and references it only reads on demand.
Security scan B 1 finding. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00094 $0.05042
Opus 5 $0.00047 $0.02521
Sonnet 5 $0.00019 $0.01008
Haiku 4.5 $0.00009 $0.00504

Measured 9d ago against content hash 297bc05f68d0, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-12, from the pricing page.

Security

Grade B, and why

cloudkit-sync scanned grade B with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 9d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Asks for rootmediumPrivilege escalation

A mod that escalates privileges can change anything on the machine, not only the project.

sudo /usr/bin/log collect --device-udid <UDID> --last 4h --output /tmp/app.logarchive
platforms/claude/skills/cloudkit-sync/SKILL.md · 233 lines

How it starts

The opening of the file, as written. The whole thing — 233 lines — stays where its author put it; the contents beside it link to each section on GitHub.

CloudKit Sync (SwiftData & Core Data)

Sync a user's data across their devices with iCloud, for free, using their private database. This is the on-ramp to multi-device; for the local store and modeling, see ios-standards (SwiftData/@Model).

CloudKit's private database is per-user, on the user's iCloud account. You don't run a server. The trade-off: the schema must obey CloudKit's rules, and sync is eventual (seconds to minutes), not instant.


SwiftData + CloudKit

let config = ModelConfiguration(
    "Main",
    schema: Schema([Trip.self, Stop.self]),
    cloudKitDatabase: .automatic        // or .private("iCloud.com.you.app")
)
let container = try ModelContainer(for: Trip.self, Stop.self, configurations: config)

Enable in the project: add the iCloud capability → CloudKit, pick/create a container, and add the Background Modes → Remote notifications capability (CloudKit uses silent pushes to trigger sync).

The schema rules CloudKit forces on you

These are the cause of ~90% of "it won't build / won't sync" issues:

  • Every non-optional property needs a default value, or must be optional. CloudKit can't represent required-with-no-default.
  • No @Attribute(.unique) — unique constraints aren't supported with CloudKit. Enforce uniqueness in app logic instead.
  • Relationships must be optional and you generally need an inverse.
  • No .deny delete rules that CloudKit can't model.

Violating these throws at ModelContainer init or silently disables sync. If a previously-local model won't sync, audit it against this list first.


Core Data path

Use NSPersistentCloudKitContainer instead of NSPersistentContainer. Set the store's cloudKitContainerOptions and NSPersistentStoreRemoteChangeNotificationPostOptionKey to observe remote changes. Same schema constraints apply. Initialize the CloudKit schema during development with initializeCloudKitSchema(options:) (debug builds only — never ship that call).

Read the full file on GitHub · 233 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 9d ago First seen · 233 lines · 94 tokens per session scan B 297bc05f68d0

Subscribe to this mod's changes

cloudkit-sync is a skill published in the GitHub repository markdavidgan/apple-dev-skills (5 stars, last pushed 13d ago), licensed MIT. It adds 94 tokens to every session and 5,042 once invoked, about $0.0005 per session on Opus 5. A static security scan graded it B with 1 finding (asks for root). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.

Related

Other skills, from other repositories

asc-revenuecat-catalog-sync

Reconcile App Store Connect subscriptions and in-app purchases with RevenueCat products, entitlements, offerings, and packages using asc and RevenueCat MCP. Use when setting up or syncing subscription catalogs across ASC and RevenueCat.

rorkai/app-store-connect-cli-skills · 51 tokens

asc-localize-metadata

Automatically translate and sync App Store metadata (description, keywords, what's new, subtitle) to multiple languages using LLM translation and asc CLI. Use when asked to localize an app's App Store listing, translate app descriptions, or add new languages to App Store Connect.

rorkai/app-store-connect-cli-skills · 60 tokens

asc-shots-pipeline

Orchestrate iOS screenshot automation with xcodebuild/simctl for build-run, AXe for UI actions, JSON settings and plan files, Koubou-based framing (asc screenshots frame), and screenshot upload (asc screenshots upload). Use when users ask for automated screenshot capture, AXe-driven simulator flows, frame composition…

rorkai/app-store-connect-cli-skills · 79 tokens

asc-metadata-sync

Sync, validate, and apply App Store metadata with the current asc canonical metadata workflow. Use when updating metadata, localizations, keywords, or migrating legacy fastlane metadata.

rorkai/app-store-connect-cli-skills · 39 tokens

asc-release-flow

Orchestrate App Store releases with asc, including staging a version, uploading or building an artifact, publishing, and submitting for review. Use when the user wants to prepare or execute a release. Keep Game Center item preparation in this skill; route other readiness failures, stuck submissions, cancellation, and…

rorkai/app-store-connect-cli-skills · 71 tokens

asc-submission-health

Diagnose App Store submission blockers and operate review health with asc, including readiness validation, repair routing, status monitoring, cancellation, and retry decisions. Use when validation fails, a version is not in a valid state, review status is unclear or stuck, or a failed submission must be repaired and…

rorkai/app-store-connect-cli-skills · 82 tokens