AU

authorization-doc-review

A maintenance tool to keep auth documentation aligned with frontend and backend security implementation.

Install

mkdir -p .claude/skills/authorization-doc-review && curl -L -o skill.zip "https://agentskills.codes/api/skills/download/14781" && unzip -o skill.zip -d .claude/skills/authorization-doc-review && rm skill.zip

Installs to .claude/skills/authorization-doc-review

Activation

This is the description your AI agent reads to decide when to run this skill — the better it matches your request, the more reliably it fires.

Review and update authorization documentation when roles, route protection, permissions, or module access behavior change across frontend, backend, and specs.
158 chars✓ has a “when” trigger
Intermediate

Key capabilities

  • Identify changed modules, routes, pages, or endpoints
  • Classify affected surfaces by access level
  • Verify alignment between frontend and backend enforcement
  • Update access control matrix documentation
  • Update module authorization documentation
  • Ensure tests cover allowed and denied paths

How it works

This skill uses a checklist to identify authorization changes, classify access levels, verify enforcement alignment, and update relevant documentation and tests.

Inputs & outputs

You give it
Code changes affecting authorization rules
You get back
Affected modules and routes, required documentation updates, mismatches, and missing auth tests

When to use authorization-doc-review

  • Update access control matrix
  • Audit route protection logic
  • Sync backend roles with API specs
  • Validate auth tests

About this skill

Authorization Documentation Review

Use this skill when a change touches roles, route protection, permissions, or module access behavior.

Goal

Keep authorization documentation aligned with implementation across:

  • frontend route guards
  • backend auth dependencies and role checks
  • feature specs
  • API specs
  • test plans
  • central authorization docs

Read First

  • docs/standards/security/access-control-matrix.md
  • docs/standards/security/module-authorization.md
  • frontend/src/auth/useAuthZ.tsx
  • backend/app/auth/roles.py
  • backend/shared/authz.py

Checklist

  1. Identify every changed module, route, page, or endpoint.
  2. Classify each affected surface as:
    • public
    • authenticated
    • role-restricted
  3. Verify frontend and backend enforcement stay aligned.
  4. Update:
    • docs/standards/security/access-control-matrix.md if role meaning changed
    • docs/standards/security/module-authorization.md for affected modules
    • feature spec / API spec / test plan if the change is feature-scoped
  5. Ensure tests cover both allowed and denied paths where relevant.

Output

When using this skill, provide:

  • affected modules and routes
  • required documentation updates
  • any mismatches between code and docs
  • any missing auth tests

When not to use it

  • The change does not involve roles, route protection, permissions, or module access behavior.

Limitations

  • The skill relies on existing documentation paths for updates.
  • The skill does not automatically implement authorization changes.
  • The skill does not define new authorization rules.

How it compares

This workflow systematically ensures authorization consistency across the stack and updates central documentation, unlike ad-hoc reviews that might miss discrepancies.

Compared to similar skills

authorization-doc-review side by side with the closest alternatives in the catalog.

SkillInstallsUpdatedSafetyDifficulty
authorization-doc-review (this skill)04moNo flagsIntermediate
rsyslog-doc12moNo flagsBeginner
authorization-doc-review04moNo flagsIntermediate
writing-a-malware-analysis-report01moReviewIntermediate

Try saying

Example prompts that trigger this skill in your AI assistant.

Search skills

Search the agent skills registry