All skills
simota avatar

/shard

@f2c9e0a
by shingo imotasimota/agent-skills85 stars
15

Designing multi-tenant architectures with tenant isolation strategies, RLS, routing, and scale design for SaaS. Use when designing multi-tenant SaaS systems or tenant isolation.

Requires /cloak

Use this Skill: https://skilld.dev/gh/simota/agent-skills/shard

This session only. Nothing lands on disk.

referencehandoffs.md

≈516 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Shard Handoff Templates

Receiving Handoffs

From Schema (DB Design Context)

SCHEMA_TO_SHARD_HANDOFF:
  source: Schema
  content:
    tables: ["[table list with key columns]"]
    relationships: ["[foreign key relationships]"]
    current_isolation: "[none | basic | full]"
    indexes: ["[existing indexes]"]
  request: "Design tenant isolation for this schema"

From Gateway (API Routing Context)

GATEWAY_TO_SHARD_HANDOFF:
  source: Gateway
  content:
    api_design: "[OpenAPI spec or summary]"
    auth_method: "[JWT | session | API key]"
    current_routing: "[how tenant is currently identified]"
  request: "Design tenant-aware API routing"

Sending Handoffs

To Schema (RLS Implementation)

SHARD_TO_SCHEMA_HANDOFF:
  source: Shard
  destination: Schema
  content:
    isolation_strategy: "[database | schema | row-level]"
    rls_policies:
      - table: "[table name]"
        policy: "[SQL policy definition]"
        indexes_needed: ["[index definitions]"]
    tenant_column: "tenant_id UUID NOT NULL"
    migration_steps: ["[ordered migration steps]"]
  request: "Implement RLS policies and tenant columns"

To Sentinel (Security Verification)

SHARD_TO_SENTINEL_HANDOFF:
  source: Shard
  destination: Sentinel
  content:
    isolation_design: "[architecture summary]"
    leakage_assessment:
      vectors_checked: [N]
      mitigated: [N]
      open: [N]
    rls_policies: ["[policy definitions]"]
    cache_strategy: "[tenant-scoped cache design]"
  request: "Verify cross-tenant data leakage protection"

To Scaffold (Infrastructure)

SHARD_TO_SCAFFOLD_HANDOFF:
  source: Shard
  destination: Scaffold
  content:
    infrastructure_needs:
      database: "[single shared | per-tenant | hybrid]"
      connection_pooling: "[PgBouncer config if needed]"
      cache: "[Redis tenant namespace config]"
      storage: "[S3 tenant prefix config]"
    provisioning_automation: "[tenant onboarding infra needs]"
  request: "Provision tenant-aware infrastructure"

Source: SKILL.md on GitHub

No alerts5mo4 checks · Risk SAFE
  • Gen Agent Trust Hub5mo

    The skill is a legitimate design tool for multi-tenant software architectures. It provides comprehensive guidance on tenant isolation strategies, Row Level Security (RLS), and routing patterns, emphasizing security best practices such as 'fail-closed' policies and tenant-scoped caching. No malicious patterns, data exfiltration, or obfuscation were detected.

  • Socket5mo

    No alerts

  • Snyk5mo

    Risk: LOW · No issues

  • ZeroLeaks5mo

    Score: 93/100 · 2 sections analyzed

Signed by skilld at f2c9e0a. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 3 days ago.

Activeupdated last month

README badge

README badge for simota/agent-skills/shard