All skills
skilld-dev avatar

/shadcn-vue-skilld

@b9c39cb

Use when adding, configuring, or debugging shadcn-vue in a Vue or Nuxt project. Covers shadcn-vue CLI commands (init, add, apply, view, search, docs, info, diff, migrate, build, mcp), components.json, styles, presets, fonts, icon libraries, registries, the MCP server, and the programmatic API. Gives exact flags and config keys for shadcn-vue 2.8.2.

Use this Skill: https://skilld.dev/gh/skilld-dev/vue-ecosystem-skills/shadcn-vue-skilld

This session only. Nothing lands on disk.

referencesmcp.md

≈511 tokens on demand. Your agent reads this file only when SKILL.md points to it.

MCP server

Source: dist/mcp-C5R50TEt.js:63-117 (tool list), dist/index.js:2620-2660 (clients), dist/index.js:2696 (mcp init). Corroborated with https://www.shadcn-vue.com/docs/mcp.

Setup

pnpm dlx shadcn-vue@latest mcp init --client claude

--client accepts claude (writes .mcp.json), cursor (.cursor/mcp.json), vscode (.vscode/mcp.json). Without --client the CLI prompts.

Manual config, any client:

{ "mcpServers": { "shadcnVue": { "command": "npx", "args": ["shadcn-vue@latest", "mcp"] } } }

Codex needs a manual ~/.codex/config.toml entry; the CLI cannot update it. Opencode config lives in opencode.json under mcp.shadcnVue.

Restart the client after config changes.

Tools

Tool Input Purpose
get_project_registries none Registry names configured in components.json
list_items_in_registries registries[], limit?, offset? List items
search_items_in_registries registries[], query, limit?, offset? Fuzzy search names and descriptions
view_items_in_registries items[] (e.g. ['@shadcn/button']) Item detail with file contents
get_item_examples_from_registries registries[], query Full demo code; query patterns like button-demo, card example
get_add_command_for_items items[] Ready-to-run add command
get_audit_checklist none Post-generation verification checklist

Most tools require a components.json; without one they return an error telling you to initialize the project first. Configure extra registries in components.json under registries; use get_item_examples_from_registries after finding an item, since view_items_in_registries does not return examples.

Namespaces

Default namespace: @shadcn. Add more in components.json:

{ "registries": { "@acme": "https://acme.com/r/{name}.json" } }

Private registries authenticate through header env vars such as ${REGISTRY_TOKEN}; define them in .env.local.

Source: SKILL.md on GitHub

1 alert9d3 checks · Risk CRITICAL
  • Gen Agent Trust Hub9d

    This skill provides automation and documentation for the shadcn-vue UI framework. Automated security scans identified 15 files with malicious reputations, indicating the presence of suspicious command strings or links within documentation logs and issue reports. The skill relies heavily on remote code execution via the CLI and a dynamic component registry system that can write files to sensitive locations such as the project's environment configuration. Additionally, it configures persistent AI agent capabilities that modify local configuration files.

  • Socket9d

    No alerts

  • Snyk9d

    Risk: LOW · No issues

Signed by skilld at b9c39cb. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub last week.

Activeupdated last week

README badge

README badge for skilld-dev/vue-ecosystem-skills/shadcn-vue-skilld