Skip to content
Back to skills

Quickstart

DSecurity

Use this skill when the user wants to securely call APIs from AI agents, manage secrets in OS keychain, or set up MCP tools for Claude Code/Cursor.

  • 54 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added May 29, 2026
ai-agentsrustbashsqlgitapi

Works with

  • claude code
  • cursor
  • cli
  • api
  • mcp

Security analysis

D59/100
  • criticalPipes output to a shell interpreter
  • mediumUses curl or wget to download content
  • criticalExfiltrates credentials via HTTP — exact pattern from Snyk ToxicSkills study
  • criticalDownloads and executes remote scripts — classic supply chain attack

Pro shows the line behind each finding and how to fix it

Scanned May 29, 2026

npx -y skills add javimosch/supercli --skill quickstart --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Quickstart?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Quickstart
[![Security: D — Skills Directory](https://www.skillsdirectory.com/api/skills/javimosch-quickstart/badge)](https://www.skillsdirectory.com/skills/javimosch-quickstart)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: earl
description: Use this skill when the user wants to securely call APIs from AI agents, manage secrets in OS keychain, or set up MCP tools for Claude Code/Cursor.
---

# earl Plugin

Secure CLI proxy for AI agents — secrets stay in OS keychain, never in tool arguments.

## Commands

### Templates
- `earl template import` — Import a provider template

### Secrets
- `earl secret set` — Store a secret in OS keychain

### Calling
- `earl call --yes --json` — Call a template command

## Usage Examples
- "Import GitHub template and call search_repos"
- "Store API token securely"
- "Set up MCP tools for Claude Code"

## Installation

```bash
curl -fsSL https://raw.githubusercontent.com/mathematic-inc/earl/main/scripts/install.sh | bash
```

## Examples

```bash
# Import a template
earl templates import https://raw.githubusercontent.com/mathematic-inc/earl/main/examples/github.hcl

# Store a secret
earl secrets set github.token

# Call a command
earl call --yes --json github.search_repos --query "language:rust stars:>100"

# MCP setup for Claude Code
# Add to MCP config:
# { "mcpServers": { "earl": { "command": "earl", "args": ["mcp", "stdio"] } } }
```

## Key Features
- HCL-defined operation templates
- OS keychain secrets storage
- MCP integration
- Prompt injection protection
- Supports HTTP, GraphQL, gRPC, Bash, SQL

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…