Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsBlogPro
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills A–Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Authors
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges
  • Chrome Extension
  • Skill Manager

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

ProTermsPrivacyRefunds
Back to skills

Github Reference Finder

ASecurity

Find, evaluate, and report useful open-source GitHub reference implementations for a technical problem. Use when a user asks for existing code, open-source examples, prior art, a library comparison, or a proven implementation pattern before designing or building a feature.

5 stars
0 votes
0 copies
0 views
Added 9/23/2026
developmentgogitdatabasesecurityperformancedocumentation

Security Analysis

A100/100

Scanned 9/23/2026

$npx -y skills add jamesblackwell/falcondeck --skill github-reference-finder --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Github Reference Finder?

Add the live security badge to your README — it updates automatically with every re-scan.

Security grade badge for Github Reference Finder
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/jamesblackwell-github-reference-finder/badge)](https://www.skillsdirectory.com/skills/jamesblackwell-github-reference-finder)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
Files
SKILL.md
---
name: github-reference-finder
description: Find, evaluate, and report useful open-source GitHub reference implementations for a technical problem. Use when a user asks for existing code, open-source examples, prior art, a library comparison, or a proven implementation pattern before designing or building a feature.
---

# GitHub Reference Finder

## Overview

Find a small set of credible repositories or source-level examples that solve a problem closely enough to inform a concrete technical decision. Research is evidence, not permission to copy code or depend on a project.

Use the GitHub tool for repository and code inspection. Use the search tool to widen discovery, resolve terminology, find project documentation, and surface repositories that GitHub search misses. Prefer the GitHub tool for facts about a repository.

## Workflow

### 1. Frame the search

Turn the problem into a compact search brief before searching:

- Desired outcome and the important workflows or edge cases.
- Target stack, runtime, and deployment constraints.
- Whether the user needs a dependency, an architectural pattern, or code to study.
- License, maintenance, security, performance, and self-hosting constraints.

If these details are absent, infer only low-risk defaults from the project and state the assumptions in the result. Ask one concise question only if an unresolvable constraint, such as a required language or license policy, changes the answer materially.

### 2. Build a query set

Use 3–6 deliberately different queries, rather than repeating one broad phrase. Combine:

- Product or domain terms: `"feature name"`, user-facing vocabulary, protocol names.
- Implementation terms: data structures, algorithms, integrations, or UI primitives.
- Stack constraints: language, framework, runtime, database, or platform.
- Evidence terms: `example`, `demo`, `reference implementation`, `starter`, `self-hosted`.

Start with precise concepts. Broaden with adjacent terminology only after the first pass. Prefer a capability query such as `OAuth device authorization Go` over a vague query such as `best OAuth projects`.

### 3. Discover candidates

1. Search GitHub repositories first, applying language, topic, and activity filters when they matter. Search code when a project-level match is too broad or a specific pattern is needed.
2. Use the search tool to discover alternative terminology, tutorials that name mature projects, official project documentation, and relevant GitHub URLs.
3. Collapse obvious forks, abandoned experiments, generated mirrors, course exercises, and wrapper repositories. Keep the upstream project or the clearest implementation instead.
4. Shortlist 2–5 candidates. Do not select a result based on stars, a search snippet, or a README claim alone.

### 4. Validate each shortlist candidate

Inspect the repository directly with the GitHub tool. Read the README and the specific files implementing the relevant behavior. Check these facts:

- **Fit:** Does it implement the required workflow, rather than merely mention it?
- **Compatibility:** Does its language, framework, runtime model, or deployment model suit the target?
- **Code quality:** Is the relevant code understandable, bounded, and supported by tests or examples?
- **Health:** Is there meaningful maintenance activity, a usable issue history, releases, or signs the project is still viable? Treat activity as a signal, not a hard requirement for reference-only code.
- **License:** Identify the repository license and flag compatibility concerns. Do not give legal advice.
- **Risk:** Look for unsafe defaults, unmaintained dependencies, secret handling, insecure auth patterns, or a scope much larger than the requested problem.

For the strongest candidate, trace the relevant call path far enough to explain how it works. Link to the exact file and, when source-level details matter, use a commit-pinned permalink or clearly identify the reviewed revision.

### 5. Synthesize a recommendation

Classify each candidate as one of:

- **Adopt:** a credible dependency or starting point for the target context.
- **Study:** a useful pattern, but not an appropriate dependency.
- **Avoid:** a superficially relevant result with a concrete mismatch or risk.

Recommend one option—or state that none is sufficiently suitable—based on the user's constraints. Never imply a repository is production-safe without evaluating the relevant code and integration surface.

## Report format

Use this concise structure, adapting it to the request:

```markdown
## Open-source references

**Recommendation:** [repository or no-fit result] — [one-sentence reason].

| Candidate | Verdict | Why it fits / does not fit | Key caveat |
| --- | --- | --- | --- |
| [name](GitHub URL) | Adopt / Study / Avoid | ... | ... |

### What to take from the recommended implementation

- [Specific subsystem, file, or pattern] — [what it demonstrates].
- [Specific subsystem, file, or pattern] — [what to adapt or avoid].

### Validation notes

- License: [license or not found]
- Maintenance: [concise evidence]
- Compatibility assumptions: [only relevant assumptions]

### Search coverage

- Queries explored: [query families or exact queries]
- Exclusions: [forks, mismatched stacks, abandoned projects, or other meaningful omissions]
```

Link every recommendation to its repository and link source-level claims to the relevant file. Keep the report short; a well-supported top candidate and one viable alternative are more useful than a long, unranked list.

## Boundaries

- Do not clone, install, copy, or modify a repository unless the user explicitly asks.
- Do not recommend copying code before checking the license and the exact source context.
- Do not treat popularity, a marketing README, or a search-engine result as proof of implementation quality.
- If no candidate meets the constraints, say so, show the closest mismatches, and suggest a more targeted next search rather than forcing a recommendation.

Attribution

jamesblackwelljamesblackwell
View sourceSee grades on GitHubMore from jamesblackwell →
SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Related Skills

Clean Code

Pragmatic coding standards - concise, direct, no over-engineering, no unnecessary comments

304955 votes

Browser Extension Developer

Use this skill when developing or maintaining browser extension code in the `browser/` directory, including Chrome/Firefox/Edge compatibility, content scripts, background scripts, or i18n updates.

286712 votes

Seo Optimizer

SEO optimization with keyword analysis, readability assessment, technical validation, content quality. Use for search rankings, blog posts, content audits, or encountering keyword density, readability scores, meta tags, schema markup errors.

2222 votes

Google Official Seo Guide

Official Google SEO guide covering search optimization, best practices, Search Console, crawling, indexing, and improving website search visibility based on official Google documentation

1862 votes

Writing Plans

Use when you have a spec or requirements for a multi-step task, before touching code

2927051 votes
View all in development →