复制安装命令
用 Codex 或 Claude 安装复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它先审查 Skill 页面再帮你安装。
复制前请先查看来源、License 和安全提示。
86 agent skills optimized for iOS 26+ development with Swift 6.
用 Codex 或 Claude 安装复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它先审查 Skill 页面再帮你安装。
复制前请先查看来源、License 和安全提示。
来源文件:README.md
86 agent skills optimized for iOS 26+ development with Swift 6.3 and modern Apple frameworks. All code examples, patterns, and guidance target the latest APIs -- Liquid Glass, approachable concurrency, Foundation Models, StoreKit 2, SwiftData, async/await URLSession, and more. No deprecated patterns.
Compatible with Claude Code, OpenAI Codex, Cursor, GitHub Copilot, and 40+ other agents. Follows the open Agent Skills standard.
Every skill is self-contained. No skill depends on another. Install only what you need.
Release history: CHANGELOG.md.
The skills CLI is the recommended install method.
Interactive install (recommended):
npx skills add dpearson2699/swift-ios-skills
Running the default command opens the skills CLI UI so you can choose which skills to install and which agent(s) to install them for.
Install everything for any coding agent:
npx skills add dpearson2699/swift-ios-skills --all
Use --all when you want the full set of 86 skills installed automatically for any coding agent.
Install specific skills directly:
npx skills add dpearson2699/swift-ios-skills --skill <skill-name> --skill <skill-name>
Check for updates to installed skills:
npx skills check
Update installed skills to the latest versions:
npx skills update
Use these after installing through the skills CLI.
Add the marketplace (one-time):
/plugin marketplace add dpearson2699/swift-ios-skills
Install everything:
/plugin install all-ios-skills@swift-ios-skills
Or install a themed bundle (bundles limit how many skills load into the context window — if you want everything, use all-ios-skills above instead of installing multiple bundles):
/plugin install swiftui-skills@swift-ios-skills
/plugin install swift-core-skills@swift-ios-skills
/plugin install ios-app-framework-skills@swift-ios-skills
/plugin install ios-data-framework-skills@swift-ios-skills
/plugin install ios-ai-ml-skills@swift-ios-skills
/plugin install ios-engineering-skills@swift-ios-skills
/plugin install ios-hardware-skills@swift-ios-skills
/plugin install ios-platform-skills@swift-ios-skills
/plugin install ios-gaming-skills@swift-ios-skills
/plugin install apple-kit-skills@swift-ios-skills
$skill-installer install https://github.com/dpearson2699/swift-ios-skills/tree/main/skills/<skill-name>
| Plugin | Skills included |
|---|---|
| all-ios-skills | All 86 skills |
| apple-kit-skills | 39 skills spanning Apple Kit frameworks plus CarPlay |
| swiftui-skills | focus-engine, swiftui-animation, swiftui-gestures, swiftui-layout-components, swiftui-liquid-glass, swiftui-navigation, swiftui-patterns, swiftui-performance, swiftui-uikit-interop, swiftui-webkit |
| swift-core-skills | core-data, swift-api-design-guidelines, swift-architecture, swift-codable, swift-charts, swift-concurrency, swift-formatstyle, swift-language, swift-testing, swiftdata |
| ios-app-framework-skills | activitykit, adattributionkit, alarmkit, app-clips, app-intents, avkit, carplay, mapkit, paperkit, pdfkit, photokit, push-notifications, storekit, tipkit, widgetkit |
| ios-data-framework-skills | cloudkit, contacts-framework, eventkit, financekit, healthkit, musickit, passkit, weatherkit |
| ios-ai-ml-skills | apple-on-device-ai, coreml, natural-language, speech-recognition, vision-framework |
| ios-engineering-skills | app-store-optimization, app-store-review, authentication, background-processing, cryptokit, debugging-instruments, device-integrity, ios-accessibility, ios-ettrace-performance, ios-localization, ios-memgraph-analysis, ios-networking, swift-security, swiftlint, ios-simulator, metrickit |
| ios-hardware-skills | accessorysetupkit, core-bluetooth, core-motion, core-nfc, dockkit, pencilkit, realitykit, sensorkit |
| ios-platform-skills | appmigrationkit, audioaccessorykit, browserenginekit, callkit, cryptotokenkit, energykit, homekit, permissionkit, relevancekit, shareplay-activities |
| ios-gaming-skills | gamekit, scenekit, spritekit, tabletopkit |
| Skill | What it covers |
|---|---|
| focus-engine | @FocusState, defaultFocus, focusSection, focused scene values, focus restoration, UIFocusGuide |
| swiftui-animation | Spring animations, PhaseAnimator, KeyframeAnimator, matchedGeometryEffect, SF Symbols |
| swiftui-gestures | Tap, drag, magnify, rotate, long press, simultaneous and sequential gestures |
| swiftui-layout-components | Grid, LazyVGrid, Layout protocol, ViewThatFits, custom layouts |
| swiftui-liquid-glass | iOS 26 Liquid Glass, glassEffect, GlassEffectContainer, morphing transitions |
| swiftui-navigation | NavigationStack, NavigationSplitView, programmatic navigation, deep linking |
| swiftui-patterns | @Observable, state ownership, environment wiring, view composition, async loading, MV-pattern architecture |
| swiftui-performance | Rendering performance, view update optimization, layout thrash, Instruments profiling |
| swiftui-uikit-interop | UIViewRepresentable, UIHostingController, Coordinator, incremental UIKit-to-SwiftUI migration |
| swiftui-webkit | WebView, WebPage, navigation policies, JavaScript calls, local content, custom URL schemes |
| Skill | What it covers |
|---|---|
| swift-api-design-guidelines | Swift API Design Guidelines -- argument labels, mutating/nonmutating pairs, documentation comments, naming conventions |
| swift-architecture | Architecture patterns: MV (@Observable), MVVM, MVI, TCA, Clean Architecture, Coordinator, decision framework |
| swift-codable | Swift Codable, JSONDecoder, JSONEncoder, CodingKeys, custom decoding, nested JSON |
| swift-charts | Bar, line, area, pie, donut, and 3D charts, scrolling, selection, annotations |
| swift-concurrency | Swift 6.2 concurrency, Sendable, actors, structured concurrency, data-race safety |
| swift-formatstyle | FormatStyle protocol, number/currency/date/duration/measurement formatting, custom styles |
| swift-language | Swift 6.3 language idioms, result builders, property wrappers, typed throws |
| swift-testing | Swift Testing framework, @Test, @Suite, #expect, parameterized tests, mocking |
| core-data | Core Data persistence, NSPersistentContainer, NSFetchedResultsController, batch operations, staged migration |
| swiftdata | @Model, @Query, #Predicate, ModelContainer, migrations, CloudKit sync, @ModelActor |
| Skill | What it covers |
|---|---|
| activitykit | ActivityKit, Dynamic Island, Lock Screen Live Activities, push-to-update |
| adattributionkit | Privacy-preserving ad attribution, postbacks, conversion values, re-engagement |
| alarmkit | AlarmKit system alarms and countdown timers, Lock Screen, Dynamic Island, Live Activities |
| app-clips | App Clips, invocation URLs, NFC, QR, App Clip Codes, App Group handoff |
| app-intents | App Intents for Siri, Shortcuts, Spotlight, widgets, and Apple Intelligence |
| avkit | AVPlayerViewController, VideoPlayer, Picture-in-Picture, AirPlay, subtitles |
| carplay | CarPlay templates, navigation, audio, communication, EV charging apps |
| mapkit | MapKit, CoreLocation, annotations, geocoding, directions, geofencing |
| paperkit | PaperMarkupViewController, markup editing, drawing, shapes (iOS 26) |
| pdfkit | PDFView, PDFDocument, annotations, text search, form filling, thumbnails |
| photokit | PhotosPicker, AVCaptureSession, photo library, video recording, media permissions |
| push-notifications | UNUserNotificationCenter, APNs, rich notifications, silent push, service extensions |
| storekit | StoreKit 2 purchases, subscriptions, SubscriptionStoreView, transaction verification |
| tipkit | Feature discovery tooltips, contextual tips, tip rules, tip events |
| widgetkit | Home Screen, Lock Screen, and StandBy widgets, Control Center controls, timeline providers |
| Skill | What it covers |
|---|---|
| cloudkit | CKContainer, CKRecord, subscriptions, sharing, CKSyncEngine, SwiftData sync |
| contacts-framework | CNContactStore, fetch requests, key descriptors, CNContactPickerViewController, save requests |
| eventkit | EKEventStore, EKEvent, EKReminder, recurrence rules, EventKitUI editors and choosers |
| financekit | Apple Card, Apple Cash, Wallet orders, transaction queries, account balances |
| healthkit | HKHealthStore, queries, statistics, workout sessions, background delivery |
| musickit | MusicKit authorization, catalog search, ApplicationMusicPlayer, MPRemoteCommandCenter |
| passkit | Apple Pay, PKPaymentRequest, PKPaymentAuthorizationController, Wallet passes |
| weatherkit | WeatherService, current/hourly/daily forecasts, alerts, attribution requirements |
| Skill | What it covers |
|---|---|
| apple-on-device-ai | Foundation Models framework, Core ML, MLX Swift, on-device LLM inference |
| coreml | Core ML model loading, prediction, MLTensor, compute unit configuration, VNCoreMLRequest, MLComputePlan |
| natural-language | NLTokenizer, NLTagger, sentiment analysis, language identification, embeddings, Translation |
| speech-recognition | SpeechAnalyzer, SpeechTranscriber, SFSpeechRecognizer, on-device recognition, audio buffer processing |
| vision-framework | Vision text recognition, face/barcode detection, image segmentation, VisionKit DataScannerViewController |
| Skill | What it covers |
|---|---|
| app-store-optimization | ASO keyword strategy, description writing, screenshot optimization, Custom Product Pages, A/B testing |
| app-store-review | App Review guidelines, rejection prevention, privacy manifests, ATT, HIG compliance |
| authentication | Sign in with Apple, ASAuthorizationController, passkeys, biometric auth (LAContext), credential management |
| background-processing | BGTaskScheduler, background refresh, URLSession background transfers |
| cryptokit | SHA-2/SHA-3, HMAC, AES-GCM, ChaChaPoly, HPKE, ML-KEM/ML-DSA, P256/Curve25519 signing, ECDH, Secure Enclave |
| debugging-instruments | Xcode debugger, Instruments, os_signpost, MetricKit, crash symbolication |
| device-integrity | DeviceCheck (DCDevice per-device bits), App Attest (DCAppAttestService attestation and assertion flows) |
| ios-accessibility | VoiceOver, Dynamic Type, custom rotors, accessibility focus, assistive-technology support |
| ios-ettrace-performance | ETTrace launch/runtime capture, exact-build dSYM matching, processed flamegraph JSON, comparable verification |
| ios-localization | String Catalogs, pluralization, FormatStyle, right-to-left layout |
| ios-memgraph-analysis | Simulator memgraph capture, leak ownership paths, reachable heap growth, raw evidence preservation |
| ios-networking | URLSession async/await, REST APIs, downloads/uploads, WebSockets, pagination, retry, caching |
| swift-security | Keychain Services, CryptoKit symmetric/asymmetric, biometric authentication, Secure Enclave, certificate trust, credential storage, OWASP compliance · Based on ivan-magda/swift-security-skill |
| ios-simulator | xcrun simctl commands, device lifecycle, push/location/privacy simulation, log streaming, simulator limitations |
| metrickit | MetricManager async reports, hang/crash diagnostics, production performance telemetry |
| swiftlint | SwiftLint setup, .swiftlint.yml, build tool plugin, rule selection, baselines, suppressions, CI integration |
| Skill | What it covers |
|---|---|
| accessorysetupkit | Privacy-preserving BLE/Wi-Fi accessory discovery, ASAccessorySession, picker UI |
| core-bluetooth | CBCentralManager, CBPeripheral, BLE scanning/connecting, services, characteristics, background modes |
| core-motion | CMMotionManager, CMPedometer, accelerometer, gyroscope, activity recognition, altitude |
| core-nfc | NFCNDEFReaderSession, NFCTagReaderSession, NDEF reading/writing, background tag reading |
| dockkit | DockAccessoryManager, camera subject tracking, motor control, framing |
| pencilkit | PKCanvasView, PKDrawing, PKToolPicker, Apple Pencil drawing and annotation |
| realitykit | RealityView, entities, anchors, ARKit world tracking, raycasting, scene understanding |
| sensorkit | Research-grade sensor data, ambient light, keyboard metrics, device usage (approved studies) |
| Skill | What it covers |
|---|---|
| appmigrationkit | Cross-platform data transfer, AppMigrationExtension export/import (iOS 26) |
| audioaccessorykit | Audio accessory features, automatic switching, device placement (iOS 26.4) |
| browserenginekit | Alternative browser engines (EU), process management, web content extensions |
| callkit | CXProvider, CXCallController, PushKit VoIP registration, call directory extensions |
| cryptotokenkit | TKTokenDriver, TKSmartCard, iOS 26 NFC smart cards, certificate-based auth |
| energykit | ElectricityGuidance, EnergyVenue, grid forecasts, load event submission, electricity insights |
| homekit | HMHomeManager, accessories, rooms, actions, triggers, MatterSupport commissioning |
| permissionkit | AskCenter, PermissionQuestion, child communication safety, CommunicationLimits |
| relevancekit | Widget relevance signals, time/location-based relevance providers (watchOS 26) |
| shareplay-activities | GroupActivity, GroupSession, GroupSessionMessenger, coordinated media playback |
| Skill | What it covers |
|---|---|
| gamekit | Game Center, GKLocalPlayer, leaderboards, achievements, real-time and turn-based multiplayer |
| scenekit | SCNView, SCNScene, 3D geometry, materials, lighting, physics, SceneView |
| spritekit | SKScene, SKSpriteNode, SKAction, physics simulation, particle effects, SpriteView |
| tabletopkit | Multiplayer spatial board games, pieces, cards, dice, Group Activities (visionOS) |
Each skill follows the open Agent Skills standard:
skills/
skill-name/
SKILL.md # Required — instructions and metadata
references/ # Optional — detailed reference material
some-topic.md
SKILL.md contains YAML frontmatter (name, description) and markdown instructions. The references/ folder holds longer examples, advanced patterns, and lookup tables that the main file points to.
This repository contains original instructional content and examples for Apple platform development. Where Apple frameworks, APIs, documentation, WWDC sessions, or trademarks are referenced, those materials remain the property of Apple Inc. The license for this repository applies to this project's original content only and does not claim ownership of or relicense Apple's documentation, trademarks, sample code, or other third-party materials.
These skills work with any agent that supports the Agent Skills standard, including:
v3.0 is a major release. If you previously installed v2.x skills, note the following changes:
Skill count: 57 skills in v2.2.0, 76 skills in v3.0.0.
Skill renames: 12 existing skills renamed to use Apple Kit framework names. Old skill paths no longer resolve. Uninstall all skills and reinstall to upgrade.
| v2.x name | v3.0 name |
|---|---|
live-activities | activitykit |
mapkit-location | mapkit |
photos-camera-media | photokit |
homekit-matter | homekit |
callkit-voip | callkit |
metrickit-diagnostics | metrickit |
pencilkit-drawing | pencilkit |
passkit-wallet | passkit |
musickit-audio | musickit |
cloudkit-sync | cloudkit |
eventkit-calendar | eventkit |
realitykit-ar | realitykit |
19 new Kit framework skills: avkit, gamekit, cryptokit, pdfkit, paperkit, spritekit, scenekit, financekit, accessorysetupkit, adattributionkit, carplay, appmigrationkit, browserenginekit, dockkit, sensorkit, tabletopkit, relevancekit, audioaccessorykit, cryptotokenkit.
New bundles: apple-kit-skills (all 39 Apple Kit framework skills) and ios-gaming-skills (GameKit, SpriteKit, SceneKit, TabletopKit).
PaperKit standalone: PaperKit content removed from pencilkit and is now its own paperkit skill.
Beta frameworks: permissionkit, energykit, paperkit, relevancekit, appmigrationkit, and audioaccessorykit require iOS/watchOS 26 beta and are subject to API changes before GM.
All skills remain self-contained: No skill references or depends on another.
To upgrade via the skills CLI:
npx skills add dpearson2699/swift-ios-skills
To upgrade Claude Code bundles, reinstall the bundles you use (old skill paths will no longer resolve).
If these skills save you time or improve your workflow, you can support ongoing maintenance through GitHub Sponsors.
Support helps keep the collection current with new Apple releases, evolving framework APIs, updated examples, and compatibility work across Claude Code, Codex, Cursor, Copilot, and other agents.
Thanks to the following people for supporting this project:
PolyForm Perimeter 1.0.0 -- see LICENSE
What this means in practice:
This project is not affiliated with, endorsed by, or sponsored by Apple Inc.
name: swift-security
description: Use when working with iOS/macOS Keychain Services (SecItem queries, kSecClass, OSStatus errors), biometric authentication (LAContext, Face ID, Touch ID), CryptoKit (AES-GCM, ChaChaPoly, ECDSA, ECDH, HPKE, ML-KEM), Secure Enclave, secure credential storage (OAuth tokens, API keys), certificate pinning (SecTrust, SPKI), keychain sharing across apps/extensions, migrating secrets from UserDefaults or plists, or OWASP MASVS/MASTG mobile compliance on Apple platforms.
license: MITUse this skill for client-side Apple platform security work: Keychain Services, access control, biometric-gated secrets, CryptoKit, Secure Enclave keys, credential storage, certificate trust, keychain sharing, legacy secret migration, security testing, and OWASP mobile compliance mapping.
Default to iOS 17+ and Swift concurrency examples when the deployment target is unknown. Keep iOS 13+ compatibility notes when the user asks for older targets. Treat iOS 26 CryptoKit post-quantum APIs as availability-gated.
Classify the request before loading references.
Do not load every reference file by default. This skill is intentionally split for progressive disclosure; load only the files needed by the user's task.
Use separate add, identity, and update dictionaries; handle every OSStatus:
func saveSecret(_ data: Data, account: String) throws {
let identity: [CFString: Any] = [
kSecClass: kSecClassGenericPassword,
kSecAttrService: "com.example.app",
kSecAttrAccount: account,
]
var add = identity
add[kSecValueData] = data
add[kSecAttrAccessible] = kSecAttrAccessibleAfterFirstUnlockThisDeviceOnly
switch SecItemAdd(add as CFDictionary, nil) {
case errSecSuccess:
return
case errSecDuplicateItem:
let status = SecItemUpdate(
identity as CFDictionary,
[kSecValueData: data] as CFDictionary
)
guard status == errSecSuccess else { throw KeychainError(status: status) }
case let status:
throw KeychainError(status: status)
}
}
Load keychain-fundamentals.md for read, delete, access-control, locked-device, and test patterns.
| If the task involves | Load |
|---|---|
| General keychain CRUD or OSStatus handling | keychain-fundamentals.md |
Choosing kSecClass or item identity | keychain-item-classes.md |
Accessibility classes or SecAccessControl | keychain-access-control.md |
| Face ID, Touch ID, or biometric-gated secrets | biometric-authentication.md |
| Secure Enclave keys | secure-enclave.md |
| Hashing, HMAC, AES-GCM, ChaChaPoly, HKDF, PBKDF2 | cryptokit-symmetric.md |
| Signing, ECDH, HPKE, ML-KEM, ML-DSA | cryptokit-public-key.md |
| OAuth tokens, API keys, logout, refresh rotation | credential-storage-patterns.md |
| App/extension keychain sharing | keychain-sharing.md |
| Certificate trust, SPKI pinning, mTLS | certificate-trust.md |
| UserDefaults/plist/NSCoding migration | migration-legacy-stores.md |
| Unit, integration, simulator, device, or CI tests | testing-security-code.md |
| OWASP MASVS/MASTG or enterprise audit mapping | compliance-owasp-mapping.md |
| Full security review | common-anti-patterns.md, then each touched domain reference |
Use directive language only for these security invariants and the matching anti-patterns in common-anti-patterns.md. For architecture choices outside this list, use advisory language.
UserDefaults, Info.plist, .xcconfig, source code, logs, files, or
NSCoding archives. Use Keychain or fetch secrets at runtime.OSStatus. Every SecItemAdd, SecItemCopyMatching,
SecItemUpdate, and SecItemDelete path must handle success and expected
failures such as errSecDuplicateItem, errSecItemNotFound, and
errSecInteractionNotAllowed.LAContext.evaluatePolicy() as the only gate for a secret. Bind
protected secrets to keychain items with SecAccessControl, then let
keychain access trigger LocalAuthentication.kSecAttrAccessible or kSecAttrAccessControl explicitly when
adding keychain items.SecItem* work off the main actor. Use an actor or serial queue for
keychain access.kSecUseDataProtectionKeychain: true unless deliberately working with
legacy file-based keychain items.SharedSecret bytes as a symmetric key. Derive with HKDF
or X9.63 derivation.Insecure.MD5 or Insecure.SHA1 for security purposes.This skill owns client-side storage, cryptographic primitives, hardware-backed keys, and trust evaluation. Route adjacent work deliberately:
authentication for Sign in with Apple, passkeys, OAuth UI flows,
ASAuthorizationController, credential state, and account sign-in UX.cryptokit for primitive CryptoKit API syntax and examples when storage,
key lifecycle, protocol/trust design, Secure Enclave policy, certificate
trust, misuse review, or compliance is not part of the task.device-integrity for DeviceCheck and App Attest attestation/assertion
flows.ios-networking for URLSession, request pipelines, ATS configuration,
retries, caching, reachability, and transport architecture.app-store-review for privacy manifests, ATT, App Review guideline
compliance, and submission readiness.This skill may mention those areas only to identify a security handoff.
Use this checklist for code reviews and migration plans. Mark each item pass, fail, or not applicable; for each failure, cite the reference file and severity.
UserDefaults, plists, source, logs, files, or
archives.SecItem* call checks OSStatus and handles common recoverable errors.SecAccessControl, not a
standalone Bool from LAContext.evaluatePolicy().kSecClass matches the item type and primary-key attributes.dataRepresentation, and designs for device-bound keys.SecTrust APIs, validates hostname/policy, and
uses SPKI or CA pinning when pinning is required.errSecItemNotFound handling.kSecAttrAccessibleWhenUnlocked implicitly by omitting the attribute.kSecAttrAccessibleAlways or
kSecAttrAccessibleAlwaysThisDeviceOnly, both deprecated.kSecAttrAccessible and kSecAttrAccessControl on the same add query.OSStatus handling and explicit accessibility in
examples.## Reference Files and
list the loaded references with a one-line purpose.kSecClass selection, primary keys, certificates, identities.SecAccessControl, background access, data protection.LAContext, enrollment-change handling.NSPinnedDomains, client certificates.
评论 (0)
暂无评论,成为第一个评论者吧!