skills/dev-npxify/SKILL.md
Audit project dependencies and replace CLI-only tools with npx/pnpm dlx to reduce installed packages. Use when: (1) User wants to reduce dependencies, (2) User says 'npxify', 'dlxify', 'reduce deps', (3) User wants to clean up package.json, (4) User asks which deps can use npx/pnpm dlx.
npx skillsauth add takazudo/claude-resources dev-npxifyInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
Audit project dependencies and identify packages that can be replaced with npx or pnpm dlx to reduce the installed dependency count.
Check the project for lockfiles to determine the package manager:
pnpm-lock.yaml → use pnpm dlxpackage-lock.json → use npxyarn.lock → use npx (yarn dlx also works but npx is more universal)Find all package.json files in the project (root + workspaces). For each, catalog all dependencies and devDependencies.
For each dependency, determine how it is used:
grep for require('pkg'), from 'pkg', import 'pkg' in source codescripts in package.json for the package binary nameClassify into one of these categories:
These are CLI tools that run infrequently and have few sub-dependencies:
| Package | Typical Usage | Notes |
|---|---|---|
| husky | "prepare": "husky" | One-time setup on install |
| lint-staged | Called from git hooks | Runs only on commit |
| serve / http-server | "serve": "serve dist" | Ad-hoc static file serving |
| create-* / init-* | Project scaffolding | One-time use |
| madge | Dependency graph | Occasional analysis |
| depcheck | Unused dep detection | Occasional analysis |
| license-checker | License audit | Occasional audit |
| npm-check-updates / ncu | Update checking | Occasional use |
| @takazudo/mdx-formatter | Markdown formatting | Infrequent, lint-staged |
| concurrently / npm-run-all | Script runners | If used only in one script |
| rimraf / del-cli | Cross-platform rm | Simple CLI, few deps |
| cross-env | Cross-platform env vars | Simple CLI, few deps |
| dotenv-cli | Env file loading | Simple CLI |
These must stay as installed dependencies:
| Category | Examples | Reason | |---|---|---| | Runtime libraries | react, express, lodash, axios | Imported in source code | | Build toolchains | webpack, vite, esbuild, next, typescript | Deep integration, used constantly | | Framework packages | @docusaurus/, @nestjs/, gatsby | Core framework | | Type definitions | @types/* | Needed for IDE and typecheck | | Test frameworks | jest, vitest, mocha, playwright | Run frequently, deep integration | | Linter + plugins | eslint, eslint-plugin-*, prettier (when used by eslint-plugin-prettier) | Plugins must resolve from same node_modules | | PostCSS/Tailwind | tailwindcss, postcss, autoprefixer | Build-time integration | | Heavy CLI tools (100+ deps) | electron-builder (300+ deps), webpack-cli | Too slow to download each time | | Packages used by other deps | prettier (if eslint-plugin-prettier is installed) | Must be resolvable | | Config dependencies | globals (if imported in eslint.config.mjs) | Imported at config load time |
Present a table to the user:
## Replaceable with pnpm dlx
| Package | Location | Current Usage | Sub-deps |
|---|---|---|---|
| husky | root devDep | prepare script | ~1 |
| lint-staged | doc devDep | pre-commit hook | ~30 |
## Keep as dependency (cannot replace)
| Package | Location | Reason |
|---|---|---|
| eslint | doc devDep | Plugins need local resolution |
| typescript | blog devDep | Build toolchain, IDE integration |
For each approved replacement:
pnpm dlx <package> or npx <package>dependencies or devDependenciespnpm install (or npm install) to update the lockfileWhen unsure whether a package is replaceable, check these:
pnpm why <package> or check npm. If 100+, keep as dep.require/imported, it MUST stay as a dependency.pnpm dlx, BUT if eslint-plugin-prettier is installed, prettier must stay as a devDependency (the plugin requires it to be locally resolvable).pnpm dlx downloads all of them every time — extremely slow. Always keep as devDep.lint-staged config may reference pnpm exec <tool> for tools that ARE installed. Only the lint-staged binary itself can be dlx'd; the tools it invokes still need to be installed.tools
Acceptance gate for a branch produced by an OpenAI Codex CLI run — usually Codex implementing a /big-plan epic that was handed off to it. Codex reports the work 'done' (or the user flags it WIP with corrections); this skill confirms the branch actually fulfils the original spec, fixes what falls short, and routes larger discoveries into GitHub issues. Use when: (1) User says '/finalize-codex-work', 'finalize codex work', 'confirm the codex work', 'check the codex branch', or 'codex said it's done', (2) A branch is the result of a Codex CLI session and needs verification against its spec issue/PR, (3) After assigning a /big-plan epic to Codex CLI. Pass -m/--merge to run /pr-complete -c at the end.
tools
Read a Figma design node directly from a share URL via the Figma REST API — no Dev Mode subscription, no MCP, no desktop app. Renders the node to PNG and dumps its full style/layout JSON so the design can be described, compared, or implemented. Use whenever the user gives a Figma design URL (figma.com/design/... or /file/...) and wants to see, read, inspect, reference, or implement that node — including `/fig-url-refer <url>`. This is the URL-based counterpart to `/figrefer` (which needs a Dev-plan desktop MCP); prefer this one when the input is a URL rather than a live desktop selection.
tools
Sync the user's Claude Code workflow skills into the OpenAI Codex CLI settings repo ($HOME/.codex) as Codex-native ports, fix the Codex .gitignore for new local state, then commit and push. Use when: (1) user says '/dev-codex-sync-settings-from-claude', 'sync codex settings', 'sync claude skills to codex', 'port skills to codex', or 'update codex from claude'; (2) after updating ~/.claude workflow skills (big-plan, x, x-as-pr, x-wt-teams) and Codex should catch up; (3) the $HOME/.codex repo has drifted behind $HOME/.claude. The ports are condensed Codex-native REWRITES, never file copies.
development
Analyze a video file (mov, mp4, webm, etc.) or a YouTube video by extracting still frames with ffmpeg and reading them chronologically with vision — Claude cannot ingest video files directly. Use whenever the user provides a video file path or YouTube URL and wants to know what happens in it: "read this video", "watch this video", "check this recording", "what happens in this .mov/.mp4", analyzing a screen recording of a UI bug, or verifying UI behavior captured in a video, even if they don't name this skill.