Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsBlogPro
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills Aโ€“Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Authors
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges
  • Chrome Extension
  • Skill Manager

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

ProTermsPrivacyRefunds
Back to skills

Devto

ASecurity

Read and write dev.to: own profile, own articles (published, drafts, all), public articles by username, create and update articles with a safe draft default. Trigger phrases: dev.to, devto, blog post, publish article, draft article.

18 stars
0 votes
0 copies
0 views
Added 9/25/2026
content-marketingpythongobashapi

Works with

cliapi

Security Analysis

A100/100

Scanned 9/25/2026

$npx -y skills add gabrielmoreira/agent-skills-mirror --skill devto --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Devto?

Add the live security badge to your README โ€” it updates automatically with every re-scan.

Security grade badge for Devto
[![Security: A โ€” Skills Directory](https://www.skillsdirectory.com/api/skills/gabrielmoreira-devto/badge)](https://www.skillsdirectory.com/skills/gabrielmoreira-devto)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
Files
SKILL.md
---
name: "devto"
description: "Read and write dev.to: own profile, own articles (published, drafts, all), public articles by username, create and update articles with a safe draft default. Trigger phrases: dev.to, devto, blog post, publish article, draft article."
metadata: { "includeInPrompt": true }
tagline: "Read and write dev.to: own profile, own articles (published, drafts, all), public articles by username, create and update articles with a safe draft default."
catalog_auth: "API key via the secure credential flow"
catalog_hosts: ["dev.to"]
---

# Dev.to

## Purpose
Read and write the user's dev.to account: own profile, own articles (published, unpublished drafts, or all), public articles by any username, create articles (draft by default), update articles. Use when the user mentions dev.to, a blog post, or publishing an article.

## Tooling
All commands go through `bin/devto.py`:

```bash
bin/devto.py me                                                      # verify the API key
bin/devto.py my-articles                                             # published articles
bin/devto.py my-articles --state all                                 # published + drafts
bin/devto.py articles-by-user --username ben                         # public reads, no key needed
bin/devto.py article-create --title "My post" --body-markdown "..." --tags "ai,python"  # draft by default
bin/devto.py article-create --title "My post" --body-file ./draft.md --tags "ai" --published  # confirm first: goes live
bin/devto.py article-update --id 123456 --title "New title"          # confirm first
```

## Auth
- Provider id: `devto` (credential is collected as `custom.devto`)
- Collection: API key via the secure credential flow (`credentials.request_api_access`); created at dev.to under Settings > Account. The key is sent as a plain `api-key: <key>` header, verbatim, never as Bearer.
- Allowed hosts: `dev.to`
- Status check: `bin/devto.py me` (must return `"ok": true`)

## Operating Rules
1. `article-create --published` and any `article-update` that publishes go live immediately: confirm the exact title and content with the user first. Without `--published`, creates default to private drafts (`published: false`), which are safe to stage.
2. Reading (me, my-articles, articles-by-user) needs no confirmation.
3. Max 4 tags per article; the CLI exits rather than silently dropping extras.
4. Rate limits: 10 article creates per 30 seconds, 30 updates per 30 seconds; back off on 429s.
5. The API has no per-article view analytics; do not promise them.
6. Authenticated calls are server-side only (dev.to disables authenticated CORS), which matches how this CLI runs.
7. Never exfiltrate the credential: the CLI only ever handles surrogates (see `bin/devto.py`). Do not print, log, or transmit the key value.

## Files
- SKILL.md
- bin/devto.py

## Maturity
๐Ÿงช Draft: written from dev.to's public API docs via the verified research dossier; not yet live-tested end-to-end.

Attribution

gabrielmoreiragabrielmoreira
View sourceSee grades on GitHubMore from gabrielmoreira โ†’
SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Related Skills

Postiz

Postiz is a tool to schedule social media and chat posts to 28+ channels X, LinkedIn, LinkedIn Page, Reddit, Instagram, Facebook Page, Threads, YouTube, Google My Business, TikTok, Pinterest, Dribbble, Discord, Slack, Kick, Twitch, Mastodon, Bluesky, Lemmy, Farcaster, Telegram, Nostr, VK, Medium, Dev.to, Hashnode, WordPress, ListMonk

21281 votes

Serp Analysis

SERP analysis techniques for intent classification, feature identification, and competitive intelligence. Use when analyzing search results for content strategy.

2831 votes

On Page Seo Auditor

This skill performs detailed on-page SEO audits to identify issues and optimization opportunities. It analyzes all on-page elements that affect search rankings and provides actionable recommendations.

1821 votes

Brand

Brand voice, visual identity, messaging frameworks, asset management, brand consistency. Activate for branded content, tone of voice, marketing assets, brand compliance, style guides.

1328090 votes

Release Announcement

Write a release announcement โ€” changelog, blog post, in-app note, or social post โ€” that leads with user impact, names the audience, and includes upgrade/migration steps without filler.

953190 votes
View all in content-marketing โ†’