Install
$ agentstack add skill-christopherlouet-claude-base-dev-prisma ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ● Environment & secrets Used
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
Prisma ORM (pointer)
Prisma publishes the canonical agent skill at prisma/skills — maintained by the Prisma team, in sync with v7 (ESM-only, driver adapters, prisma.config.ts). The vendor reference stays current with every release; the prior foundation skill (418 lines) drifted on each Prisma version bump.
Delegate to the vendor skill
# Prisma's preferred path (verify on their README):
npx skills add prisma/skills
# Fallback — clone and copy:
git clone --depth 1 https://github.com/prisma/skills ~/dev/vendor-skills/prisma
# Skill content lives in CLAUDE.md / AGENTS.md per their convention.
Recipe entry: [docs/recipes/recommended-vendor-skills.md](../../../docs/recipes/recommended-vendor-skills.md) §"Prisma — prisma/skills". Reduction rationale: [specs/foundation-positioning-review/spec.md](../../../specs/foundation-positioning-review/spec.md) Wave 1.
Foundation-unique angle preserved: cross-cutting discipline
The vendor covers the Prisma API surface. The foundation enforces version-agnostic conventions that survive across releases:
- Security: never
select: { passwordHash: true }or any sensitive column without explicit need; default toselectoverincludefor security + perf — cross-ref.claude/rules/security.md. - TDD with a real DB: integration tests hit a real test database (Docker Compose pattern), never a Prisma mock — cross-ref the
dev-tddskill. - Postgres interop: if the stack uses Supabase, Prisma operates against the same Postgres — cross-ref the
dev-supabaseskill (Supabase RLS coexists with Prisma queries).
Foundation rules preserved
- NEVER use
prisma migrate devin production. Alwaysprisma migrate deploy. prisma generateMUST run after every schema change. Add it to the CI build step.- Singleton PrismaClient (HMR-safe
globalThispattern in dev) — avoid connection leaks. - YOU MUST add an index on every foreign key and on every column in frequent WHERE clauses.
- YOU MUST use
selectinstead ofincludewhen you know the fields (security + perf). - NEVER commit
.envwithDATABASE_URL. Always.env.examplewith placeholders. - NEVER rename a field in one migration. Two steps: add new column → backfill → remove old column (avoids prod downtime).
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: christopherlouet
- Source: christopherlouet/claude-base
- License: MIT
- Homepage: https://christopherlouet.github.io/claude-base/
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.