Install
$ agentstack add skill-jgamaraalv-ts-dev-kit-service-worker ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ● Network access Used
- ● Filesystem access Used
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
Service Worker
Table of Contents
- [Constraints](#constraints)
- [Lifecycle](#lifecycle)
- [Registration](#registration)
- [Install / Activate / Fetch Events](#install-event--pre-cache-assets)
- [Common Pitfalls](#common-pitfalls)
- [Next.js Integration](#nextjs-integration)
- [Reference files](#reference-files)
Constraints
- HTTPS required (localhost exempt for dev)
- No DOM access — runs on separate thread
- Fully async — no synchronous XHR, no localStorage
- No dynamic
import()— only staticimportstatements - Scope defaults to the directory containing the SW file
selfrefers toServiceWorkerGlobalScope
Lifecycle
register() → Download → Install → [Wait] → Activate → Fetch control
- Register from main thread via
navigator.serviceWorker.register() - Install event fires once — use to pre-cache static assets
- Wait — new SW waits until all tabs using old SW are closed (skip with
self.skipWaiting()) - Activate event fires — use to clean up old caches
- Fetch events start flowing — SW controls page network requests
A document must reload to be controlled (or call clients.claim() during activate).
Updating a Service Worker
- Browser byte-compares the SW file on each navigation (or every 24h)
- New version installs in background while old version still serves
- Increment the cache name (e.g.,
v1→v2) in the new version - Delete old caches in the
activatehandler - Call
self.skipWaiting()ininstallto activate immediately - Call
self.clients.claim()inactivateto take control of open pages
DevTools
- Chrome:
chrome://inspect/#service-workersor Application > Service Workers - Firefox:
about:debugging#/runtime/this-firefoxor Application > Service Workers - Edge:
edge://inspect/#service-workersor Application > Service Workers
Unregister, update, and inspect caches from the Application panel. Use "Update on reload" checkbox during development.
Registration
// main.js — register from the page
if ("serviceWorker" in navigator) {
const reg = await navigator.serviceWorker.register("/sw.js", { scope: "/" });
// reg.installing | reg.waiting | reg.active
}
Scope rules:
- SW at
/sw.jscan control/and all subpaths - SW at
/app/sw.jscan only control/app/by default - Broaden scope with
Service-Worker-Allowedresponse header
Install Event — Pre-cache Assets
// sw.js
const CACHE_NAME = "v1";
const PRECACHE_URLS = ["/", "/index.html", "/style.css", "/app.js"];
self.addEventListener("install", (event) => {
event.waitUntil(caches.open(CACHE_NAME).then((cache) => cache.addAll(PRECACHE_URLS)));
});
waitUntil(promise) — keeps install phase alive until the promise settles. If rejected, installation fails and the SW won't activate.
Activate Event — Clean Up Old Caches
self.addEventListener("activate", (event) => {
event.waitUntil(
caches
.keys()
.then((keys) =>
Promise.all(keys.filter((key) => key !== CACHE_NAME).map((key) => caches.delete(key))),
),
);
});
Fetch Event — Intercept Requests
self.addEventListener("fetch", (event) => {
event.respondWith(caches.match(event.request).then((cached) => cached || fetch(event.request)));
});
respondWith(promise) — must be called synchronously (within the event handler, not in a microtask). The promise resolves to a Response.
For caching strategy patterns (cache-first, network-first, stale-while-revalidate), see [references/caching-strategies.md](references/caching-strategies.md).
Navigation Preload
Avoid the startup delay when a SW boots to handle a navigation:
self.addEventListener("activate", (event) => {
event.waitUntil(self.registration?.navigationPreload.enable());
});
self.addEventListener("fetch", (event) => {
event.respondWith(
(async () => {
const cached = await caches.match(event.request);
if (cached) return cached;
const preloaded = await event.preloadResponse;
if (preloaded) return preloaded;
return fetch(event.request);
})(),
);
});
Communicating with Pages
// Page → SW
navigator.serviceWorker.controller.postMessage({ type: "SKIP_WAITING" });
// SW → Page (via Clients API)
const clients = await self.clients.matchAll({ type: "window" });
clients.forEach((client) => client.postMessage({ type: "UPDATED" }));
// SW listens
self.addEventListener("message", (event) => {
if (event.data?.type === "SKIP_WAITING") self.skipWaiting();
});
Next.js Integration
In Next.js, place the service worker file in public/sw.js. public/sw.js is intentionally plain JS (not processed by Next.js build pipeline). Register it from a client component:
"use client";
import { useEffect } from "react";
export function ServiceWorkerRegistrar() {
useEffect(() => {
if ("serviceWorker" in navigator) {
navigator.serviceWorker.register("/sw.js");
}
}, []);
return null;
}
Add to root layout. Next.js serves public/ files at the root, so /sw.js scope covers /.
Common Pitfalls
- Response cloning —
response.clone()before both caching and returning, since body streams can only be read once - Opaque responses — cross-origin fetches without CORS return opaque responses (status 0).
cache.add()will refuse them. Usecache.put()but you can't inspect the response - waitUntil timing — call
event.waitUntil()synchronously within the event handler, not inside an async callback - Scope ceiling — a SW cannot control URLs above its own directory unless
Service-Worker-Allowedheader is set - No state persistence — the SW may terminate at any time when idle. Don't store state in global variables — use Cache API or IndexedDB
Reference files
- Caching strategies (cache-first, network-first, stale-while-revalidate): [references/caching-strategies.md](references/caching-strategies.md)
- Push notifications & background sync (push subscription, push events, background sync): [references/push-and-sync.md](references/push-and-sync.md)
- API quick reference (
Cache,CacheStorage,FetchEvent,Clients,ServiceWorkerRegistration,ServiceWorkerGlobalScope): [references/api-reference.md](references/api-reference.md)
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: jgamaraalv
- Source: jgamaraalv/ts-dev-kit
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.