Install
$ agentstack add skill-pascalebeier-hitkeep-hitkeep-analytics ✓ scanned · ✓ verified — works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
About
HitKeep Analytics
Use this as the spine skill for HitKeep analytics work. It teaches the agent how HitKeep expects analytics to be queried, interpreted, and bounded.
Skill Pack Shape
This parent skill has logical child skills:
hitkeep-traffic-diagnosisfor traffic drops, spikes, and source changes.hitkeep-ai-visibility-analystfor AI crawler fetches, AI-referred visits, assistant families, citation yield, and fetch failure hotspots.hitkeep-ecommerce-analystfor revenue, products, sources, city/provider/ASN aggregates, and conversion context.hitkeep-tracking-verifierfor tracker install checks, automatic events, WordPress-style installs, and "is tracking live?" questions.
The child skills are sibling skill directories in the official pack. Do not assume nested child SKILL.md files are discoverable by every client.
The pack also includes hitkeep-i18n for dashboard translation and locale-formatting changes. Use it for product UI copy work, not for analytics interpretation.
Operating Principles
HitKeep is privacy-first web analytics with optional read-only MCP access for approved assistants.
Prefer this boundary:
- Use HitKeep MCP for scoped, read-only aggregate analytics and official docs lookup.
- Use the dashboard for normal human investigation, setup, admin, and visual review.
- Use the REST API for normal application automation and write workflows.
- Use open exports and takeout for portable owned files and raw export needs.
Do not ask MCP for raw visitor IPs, raw visitor rows, raw hit exports, dashboard cookies, billing changes, site administration, alert creation, or goal/funnel mutation. If the user needs those, route them to the dashboard, REST API, or takeout instead.
Default Workflow
- Identify the site, timeframe, comparison period, and metric. If any are missing, make a reasonable default: visible site if only one exists, last 30 days, and previous period comparison.
- Check available HitKeep MCP tools. If MCP is unavailable, say which parts cannot be verified live and use official docs or user-provided data.
- Use
hitkeep_list_siteswhen site scope is ambiguous. - Use report-shaped MCP tools before trying to reconstruct analytics manually:
hitkeep_get_site_overviewfor traffic overview and comparisons.hitkeep_get_event_namesandhitkeep_get_event_breakdownfor event activity.hitkeep_get_ecommercefor revenue, products, sources, city/provider/ASN aggregate context.hitkeep_get_web_vitalsfor page and visitor-context performance aggregates.hitkeep_get_ai_visibilityfor AI crawler and AI-referred traffic.hitkeep_get_opportunitiesfor saved recommendations.hitkeep_get_search_console_statusandhitkeep_get_search_consolefor imported organic search aggregates.hitkeep_get_mcp_helpfor token setup, date range, filter syntax, and privacy boundary guidance.hitkeep_search_docs,hitkeep_get_doc, andhitkeep_get_api_referencefor official documentation.
- Triangulate before making a recommendation. Compare time shape, channel/source mix, event activity, Search Console signals, Web Vitals, and ecommerce outcomes where relevant.
- Present findings with a verdict first, then evidence, next action, and caveats.
Output Shape
For analytics investigations, use this compact structure:
Verdict:
Evidence:
-
-
-
Next:
-
Caveats:
-
For pure retrieval questions, answer directly and include the timeframe and site scope.
Privacy Guardrails
Keep assistant access aggregate-only. Do not request broader tokens to make a question easier. Do not suggest dashboard-cookie reuse. Do not infer individual visitor identity from aggregate reports.
If a user asks for raw data, say that HitKeep MCP is not the raw export surface and point them to takeout/open exports.
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: PascaleBeier
- Source: PascaleBeier/hitkeep
- License: MIT
- Homepage: https://hitkeep.com
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet — be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.