skills/laravel/laravel-api/SKILL.md
Build REST endpoints with API Resources, Sanctum authentication, and versioned route groups in Laravel. Use when creating JsonResource classes, adding token-based auth, or defining rate-limited API routes.
npx skillsauth add hoangnguyen0403/agent-skills-standard laravel-apiInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
php artisan make:resource UserResource.routes/api.php with version prefix and throttle middleware.auth:sanctum middleware to protected routes.See implementation examples for complete API Resource with collection usage.
ApiResource classes extending JsonResource for data transformation.UserResource::collection($users) for lists. Never use response()->json($model) or return raw models directly.toArray($request) to define specific output fields and prevent sensitive data leakage.php artisan make:resource UserResource to scaffold new resources.auth:sanctum middleware in routes/api.php for SPAs or mobile app authentication.HasApiTokens trait to your User model to enable token-based authentication.$user->createToken('token-name')->plainTextToken.Route::prefix('v1')->group(...) and use versioned namespaces (e.g., App\Http\Controllers\Api\V1).RateLimiter::for('api', ...) using Limit::perMinute(60) in AppServiceProvider.throttle:api middleware to route groups in routes/api.php.response()->json(): Use API Resource classes instead.testing
Infer the requesting operator's technical fluency from message content (never ask directly) and adapt register — business, hybrid, or technical — across SDLC workflow output. Use when starting sdlc, brainstorm-feature, plan-feature, verify-work, publish-notes, or session-report, or whenever a request's phrasing signals a non-technical or cross-stack operator.
documentation
Define transaction boundaries, locking, and consistency guarantees for multi-step writes. Use when designing atomic operations, retries, idempotency, or concurrent write behavior.
development
Design relational or document schemas from access patterns, cardinality, and lifecycle. Use when modeling entities, choosing embed vs normalize, or shaping schema boundaries before implementation.
data-ai
Diagnose database latency with explain plans, index ownership, and query-shape review. Use when a query is slow, an index is missing, or scans and N+1 patterns appear.