agentsclimarketplace

Common pitfalls

Skill bg-szy/TOP-SKILLS/skills/marketplace/common-pitfalls

全球最大的 Claude Code 技能聚合库 · 收录 3900+ 来自 12+ 来源的技能,提供在线搜索与趋势分析看板 / The world's largest Claude Code skill aggregation hub — 3900+ skills from 12+ sources with online search and trend dashboard

Install
npx -y skills add bg-szy/TOP-SKILLS --skill common-pitfalls

Assembled from the repository path, not quoted from the project. Check it against their README if it does not work.

2 things to look at

  • no licenseNo license file was found in the repository. Code published without one is not open source by default, so using it at work is a question for whoever answers licensing questions where you are.
  • 4 stars4 stars. Stars are a popularity signal and not a quality one, but at this level it is likely that nobody has read this closely except its author, and you would be relying on your own review.

What its author says it does

Copied from the file, not written here

Orchestrates pitfall prevention skills for common development issues. Auto-triggered during code review to check for TanStack Query, Drizzle ORM, Express API, React, WebSocket, blockchain RPC, and security pitfalls.

SKILL.md

2.9 KB, 679 tokens by cl100k_base, as published. Nobody here has run it

Common Pitfalls Prevention

Orchestrates specialized pitfall prevention skills learned from production issues. Use during code review to automatically check for common mistakes.

When to Use

  • During code review (auto-triggered by full-review skill)
  • Before committing changes
  • When debugging production issues
  • Reviewing unfamiliar code patterns

Workflow

Step 1: Identify Code Categories

Based on changed files, determine which sub-skills to invoke:

File PatternSub-Skill
**/hooks/**, useQuery, useMutationpitfalls-tanstack-query
**/db/**, schema.ts, drizzlepitfalls-drizzle-orm
**/routes/**, router., app.pitfalls-express-api
**/components/**, **/pages/**, .tsxpitfalls-react
websocket, wss, ws.pitfalls-websocket
contract, rpc, multicall, gaspitfalls-blockchain
session, key, cache, logpitfalls-security

Step 2: Invoke Relevant Sub-Skills

For each category found, invoke the corresponding skill for detailed patterns.

Step 3: Generate Combined Report

Aggregate findings from all invoked sub-skills.

Sub-Skills Reference

SkillFocus Area
pitfalls-tanstack-queryQuery keys, invalidation, v5 patterns
pitfalls-drizzle-ormSchema types, migrations, array columns
pitfalls-express-apiRoutes, status codes, storage patterns
pitfalls-reactComponents, forms, a11y, responsive
pitfalls-websocketServer setup, heartbeat, reconnection
pitfalls-blockchainRPC errors, gas, multicall, nonces
pitfalls-securitySession keys, caching, logging, secrets

Quick Reference Checklist

Core

  • TanStack Query keys use full URL paths
  • Mutations invalidate relevant queries
  • Drizzle types exported for all models
  • API routes return correct status codes
  • All RPC calls wrapped in try/catch
  • WebSocket has heartbeat/reconnection
  • React components handle loading/error states
  • No secrets in logs or frontend code

Type Safety

  • No any types - use unknown and narrow
  • Types inferred from schema ($inferSelect, z.infer)
  • Type guards for runtime validation

Financial

  • BigInt for all token amounts
  • Decimal.js for price calculations
  • Proper rounding (floor/ceil)

Blockchain

  • Gas estimation with buffer
  • EIP-1559 gas pricing
  • Transaction simulation before send
  • Multicall uses allowFailure: true

Security

  • Session keys have expiry and limits
  • AES-256-GCM for stored credentials
  • Audit logging for sensitive operations
  • Rate limiting with exponential backoff

What ships with it: 1 file

15.5 KB alongside SKILL.md

Keep looking

Skills are one crate of 328,083. Ordering is by how many stacks a row turns up in, so the top of any crate is what has actually been picked rather than what has the most stars.