sqlite-dev

A set of SQLite database conventions for TypeScript and Bun applications using Drizzle, a library for defining and querying databases. The conventions keep the local schema compatible with PostgreSQL, a common production database.

In plain words
What is it for?
Use them when naming tables and fields, defining relationships and constraints, storing JSON documents, operating SQLite, and designing schemas that can later move to PostgreSQL.
Why use it?
They reduce the chance that a change from the local database to PostgreSQL will require redesigning the schema.

Skill for Claude CodeCodex

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add skills/robconery/cassini-workshop/sqlite-dev
Any agent
npx skills add robconery/cassini-workshop --skill sqlite-dev
Clone the repo
git clone --depth 1 https://github.com/robconery/cassini-workshop

Made for: Claude Code, Codex.

Per session 246 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 2,443 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00246 $0.02443
Opus 5 $0.00123 $0.01222
Sonnet 5 $0.00049 $0.00489
Haiku 4.5 $0.00025 $0.00244

Measured yesterday against content hash 27a2ea0ed4cb, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

sqlite-dev scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.

The scan reads SKILL.md. This mod also ships 4 executable files (templates/db.production.ts, templates/db.ts, templates/drizzle.config.ts, …), listed below but not scanned — reading those needs a real analyzer, not pattern matching.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

Origin

Copies of this mod

2 near-identical copies found in the catalogue:

.claude/skills/sqlite-dev/SKILL.md · 174 lines

How it starts

The opening of the file, as written. The whole thing — 174 lines — stays where its author put it; the contents beside it link to each section on GitHub.

SQLite for Local Dev — Postgres-Portable, Bun + Drizzle

🎯 Why: Design for Change

The goal of writing software is to be able to change it safely — including changing the database. Every rule here (snake_case, plural tables, NOT NULL FKs, JSON document store) exists so the schema ports to Postgres with a dialect swap, not a rewrite. Portability is change-safety: when SQLite stops fitting, you move with a Drizzle config edit instead of a month of forensics.

SQLite here is the development database for a TypeScript/Bun app whose production system of record will almost certainly be Postgres. That single fact drives every rule: write the SQLite schema so that switching to Postgres is a Drizzle dialect change and a data copy, not a redesign. Use the same names, the same modeling discipline, and the same integrity rules as postgres-dba — SQLite is just a smaller engine running them.

This skill is about the SQLite schema, the Drizzle layer, and operating SQLite. For schema-design philosophy (why NOT NULL FKs, why a surrogate key) the authority is postgres-dba; this skill does not re-argue it, it ports it. For app-layer TypeScript use the language skills.

How to use this skill

  1. Match the task to a rule below or in the decision guide.
  2. Open the matching references/*.md for the rationale, the wrong way, the right way, and the explicit-override escape hatch.
  3. Copy the closest file from templates/ and adapt it — the templates already encode every convention, so you start compliant and portable.
  4. Apply the rule unless you can state, in a code comment, the specific reason it does not apply. "SQLite let me" is not a reason — SQLite lets you do almost anything; Postgres will not.

The hard rules (non-negotiable defaults)

  1. Naming is identical to postgres-dba. snake_case, lowercase, unquoted. Tables plural (orders), columns singular (shipped_at), primary key literally id, FKs <table_singular>_id, booleans is_/has_, timestamps past-tense _at. In Drizzle the TypeScript property may be camelCase, but the column name argument is always the snake_case namecreatedAt: integer('created_at', …). The database never sees a quoted mixed-case identifier. See references/naming.md.

Read the full file on GitHub · 174 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. yesterday First seen · 174 lines · 246 tokens per session scan A 27a2ea0ed4cb

Subscribe to this mod's changes

sqlite-dev is a skill published in the GitHub repository robconery/cassini-workshop (1 stars, last pushed 2mo ago), licensed MIT. It adds 246 tokens to every session and 2,443 once invoked, about $0.0012 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.

Related

Other skills, from other repositories

supermemory

Supermemory is a state-of-the-art memory and context infrastructure for AI agents. Use this skill when building applications that need persistent memory, user personalization, long-term context retention, or semantic search across knowledge bases. It provides Memory API for learned user context, User Profiles for…

supermemoryai/supermemory · 81 tokens

frontmcp-setup

Use when starting, scaffolding, or organizing a FrontMCP project. Covers creating a new project (CLI scaffold or manual) for Node, Vercel, and other targets; standalone versus Nx-monorepo layout, naming conventions, generators, and dependency rules; composing multiple @App classes, ESM packages, and remote MCP servers…

agentfront/frontmcp · 176 tokens

hono-core

Hono ultrafast web framework fundamentals - routing, context, handlers, and response patterns for multi-runtime deployment.

bobmatnyc/claude-mpm-skills · 26 tokens

mooncite

Use when an agent needs past Pi, OMP, Claude Code, Codex, or ChatGPT context.

WhenMoon-afk/claude-memory-mcp · 26 tokens

release

Drive the AR.IO Node release process end-to-end — preflight checks, prepare commit, finalize with image SHAs, test docker compose profiles, tag & publish, and post-release cleanup. Use when the user says "cut a release", "prepare release N", "finalize the release", or similar.

ar-io/ar-io-node · 64 tokens

testing

Decision guide for testing in the ar-io-node repo — which test layer to use, how to run it, and which helpers to reach for. Use when writing a new test, picking a layer (unit / property / e2e / auto-verify / parquet integration / load test), running the suite or a single file, debugging a test failure, or when a…

ar-io/ar-io-node · 0 tokens