Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add sutchan/Agent-Skills-Hub --skill minimal-web-baas-demogit clone --depth 1 https://github.com/sutchan/Agent-Skills-HubWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/sutchan/agent-skills-hub/minimal-web-baas-demo)<a href="https://agentmods.dev/skills/sutchan/agent-skills-hub/minimal-web-baas-demo"><img src="https://agentmods.dev/badge/skills/sutchan/agent-skills-hub/minimal-web-baas-demo/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/sutchan/agent-skills-hub/minimal-web-baas-demo"><img src="https://agentmods.dev/badge/skills/sutchan/agent-skills-hub/minimal-web-baas-demo.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00144 | $0.02195 |
| Opus 5 | $0.00072 | $0.01097 |
| Sonnet 5 | $0.00029 | $0.00439 |
| Haiku 4.5 | $0.00014 | $0.00219 |
Grade A, and why
minimal-web-baas-demo scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 12d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
This is a copy
98% identical to minimal-web-baas-demo — 2 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.
How it starts
The opening of the file, as written. The whole thing — 139 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Sibling skills (local only)
Sibling CloudBase skills ship beside this skill. Use local relative paths such as ../web-development/SKILL.md.
If a referenced sibling skill file is missing from this environment, ask the user to install the full CloudBase plugin (or the missing skill). Do not HTTP-fetch remote skill or protocol markdown into the agent context.
Minimal Web BaaS Demo (fast path)
Goal: minutes to an interactive Web + database preview, not a cloud-function middleware stack.
This skill is the product equivalent of CloudBase Sites SessionStart Rule 5 (BaaS-first data persistence).
Activation Contract
Use this first when
- The user asks for a minimal fullstack / 前后端 demo, message board, Todo, Notes, Kanban, or Lovable/Supabase-like quick app on CloudBase Web.
- The user says "带云函数+云数据库" but the real need is CRUD + preview (reinterpret as Web SDK → database).
Do NOT use for
- WeChat Mini Programs (
wx.cloud) — use../miniprogram-development/SKILL.md. - True server workloads: payments callbacks, SMS providers, secret third-party keys, cron/ETL, WebSockets — use
../cloud-functions/SKILL.mdor../cloudrun-development/SKILL.md. - Large multi-module products that need
../spec-workflow/SKILL.md.
Hard rules (align with Sites SessionStart Rule 5)
- BaaS-first data path
- Schema / admin: Prefer MCP management tools. Do not ask the user to create collections/tables in the console. If MCP tools are missing in this session, configure MCP for next time and use
tcbCLI (../cloudbase-cli/SKILL.md) for equivalent schema/admin ops.- NoSQL:
writeNoSqlDatabaseStructure(create collection / indexes) + permission tools as needed; CLI: NoSQL commands incloudbase-cli. - PostgreSQL: follow
../postgresql-development-cloudbase/SKILL.md(queryPgDatabase/managePgDatabase/ migrations); CLI parity viatcb db pg …when MCP is unavailable.
- NoSQL:
- Reads / writes:
@cloudbase/js-sdkin the browser.- NoSQL:
app.database()→db.collection(...).get()/add()/update()/watch(...). - PG:
app.rdb().from(...).
- NoSQL:
- Prefer the template helper (often
src/utils/cloudbase.ts). Do not invent a second SDK wrapper.
- Schema / admin: Prefer MCP management tools. Do not ask the user to create collections/tables in the console. If MCP tools are missing in this session, configure MCP for next time and use
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 12d ago First seen · 139 lines · 144 tokens per session scan A 5e79328af4e2
minimal-web-baas-demo is a skill published in the GitHub repository sutchan/Agent-Skills-Hub (2 stars, last pushed yesterday), licensed MIT. It adds 144 tokens to every session and 2,195 once invoked, about $0.0007 per session on Opus 5. A static security scan graded it A with 0 findings. It is 98% identical to minimal-web-baas-demo, differing in 2 lines, and is treated as a copy.
Other skills, from other repositories
search-engine-expert
Expert guide for full-text search engines (Typesense, Meilisearch, Elasticsearch), faceted search, and autocomplete / Panduan ahli mesin pencarian full-text (Typesense, Meilisearch, Elasticsearch), pencarian berfaset, dan autocomplete.
backend-patterns
Guides backend service architecture — layering, N+1 query prevention, caching, retries, rate limiting, and background job processing, in Go primarily and TypeScript/PHP where the pattern is language-agnostic. Use when structuring handler/service/repository layers, reviewing a service for N+1 queries, adding a cache in…
golang-database
This skill should be used when the user asks to "configure a Go database connection pool", "use database/sql in Go", "set up pgxpool", "why is my Go app running out of connections", "scan rows into a Go struct", "handle sql.ErrNoRows", or writes Go code that opens, pools, queries, or scans a PostgreSQL/MySQL…
supabase
Use when doing ANY task involving Supabase. Triggers: Supabase products (Database, Auth, Edge Functions, Realtime, Storage, Vectors, Cron, Queues); client libraries and SSR integrations (supabase-js, @supabase/ssr) in Next.js, React, SvelteKit, Astro, Remix; auth issues (login, logout, sessions, JWT, cookies…
spring-data-neo4j
Provides Spring Data Neo4j integration patterns for Spring Boot applications. Use when you need to work with a graph database, Neo4j nodes and relationships, Cypher queries, or Spring Data Neo4j. Creates node entities with @Node annotation, defines relationships with @Relationship, writes Cypher queries using @Query…
spring-data-jpa
Provides patterns to implement persistence layers with Spring Data JPA. Use when creating repositories, configuring entity relationships, writing queries (derived and @Query), setting up pagination, database auditing, transactions, UUID primary keys, multiple databases, and database indexing.