Extract DesignSAFE
Extract any website's complete design system with one command. DTCG tokens, semantic+primitive+composite, MCP server for Claude Code/Cursor/Windsurf, multi-platform emitters (iOS SwiftUI, Android Compose, Flutter, WordPress), Tailwind v4, Figma variables, shadcn/ui, CSS health audit, WCAG remediatio
Overview
Extract any website's complete design system with one command. DTCG tokens, semantic+primitive+composite, MCP server for Claude Code/Cursor/Windsurf, multi-platform emitters (iOS SwiftUI, Android Compose, Flutter, WordPress), Tailwind v4, Figma variables, shadcn/ui, CSS health audit, WCAG remediatio
7e066f556beeOBSERVED · 2026-10-07Install
Commands as the repository documents them. They are shown, not run.
npm install -g designlang
What it tells the agent
The instruction file, verbatim from the audited commit — this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.
--- name: extract-design description: "Extract the full design language from any website URL. Produces 8 output files including AI-optimized markdown, visual HTML preview, Tailwind config, React theme, shadcn/ui theme, Figma variables, W3C design tokens, and CSS variables. Also runs WCAG accessibility scoring. Use when user says 'extract design', 'get design system', 'design language', 'design tokens', 'what colors/fonts does this site use', or '/extract-design'." allowed-tools: Bash, Read, Write, Glob --- # Extract Design Language Extract the complete design language from any website URL. Generates 8 output files covering colors, typography, spacing, shadows, components, breakpoints, animations, and accessibility. ## Prerequisites Ensure `designlang` is available. Install if needed: ```bash npm install -g designlang ``` Or use npx (no install required): ```bash npx designlang <url> ``` ## Process 1. **Run the extraction** on the provided URL: ```bash npx designlang <url> --screenshots ``` For multi-page crawling: `npx designlang <url> --depth 3 --screenshots` For dark mode: `npx designlang <url> --dark --screenshots` 2. **Read the generated markdown file** to understand the design: ```bash cat design-extract-output/*-design-language.md ``` 3. **Present key findings** to the user: - Primary color palette with hex codes - Font families in use - Spacing system (base unit if detected) - WCAG accessibility score - Component patterns found - Notable design decisions (shadows, radii, etc.) 4. **Offer next steps:** - Copy `*-tailwind.config.js` into their project - Import `*-variables.css` into their stylesheet - Paste `*-shadcn-theme.css` into globals.css for shadcn/ui users - Import `*-theme.js` for React/CSS-in-JS projects - Import `*-figma-variables.json` into Figma for designer handoff - Open `*-preview.html` in a browser for a visual overview - Use the markdown file as context for AI-assisted development ## Output Files (8) | File | Purpose | |------|---------| | `*-design-language.md` | AI-optimized markdown — the full design system for LLMs | | `*-preview.html` | Visual HTML report with swatches, type scale, shadows, a11y | | `*-design-tokens.json` | W3C Design Tokens format | | `*-tailwind.config.js` | Ready-to-use Tailwind CSS theme | | `*-variables.css` | CSS custom properties | | `*-figma-variables.json` | Figma Variables import format | | `*-theme.js` | React/CSS-in-JS theme object | | `*-shadcn-theme.css` | shadcn/ui theme CSS variables | ## Additional Commands - **Compare two sites:** `npx designlang diff <urlA> <urlB>` - **View history:** `npx designlang history <url>` ## Options | Flag | Description | |------|-------------| | `--out <dir>` | Output directory (default: `./design-extract-output`) | | `--dark` | Also extract dark mode color scheme | | `--depth <n>` | Crawl N internal pages for site-wide extraction | | `--screenshots` | Capture component screenshots (buttons, cards, nav) | | `--wait <ms>` | Wait time after page load for SPAs | | `--framework <type>` | Generate only specific theme (`react` or `shadcn`) |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | NA |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (0)
No findings outside the package's declared scope.
Gates applied: no_behavioural_pass.
7e066f556beefull audit observations/trust-audit/skill/manavarya09__extract-design.json · Report an issue / request a re-scanAudit history
Every audit this skill has had.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | 7e066f556bee | SAFE | B | 89 | first audit |
Questions
What does the Extract Design skill do?
Extract any website's complete design system with one command. DTCG tokens, semantic+primitive+composite, MCP server for Claude Code/Cursor/Windsurf, multi-platform emitters (iOS SwiftUI, Android Compose, Flutter, WordPress), Tailwind v4, Figma variables, shadcn/ui, CSS health audit, WCAG remediatio
Is Extract Design safe to install?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean skill reads B.
What can Extract Design access on my machine?
The audit observed no filesystem, network or shell use at all in its source.
How current is this page?
The grade is for one exact copy of the source (7e066f556bee), read on 2026-10-07. The repository is watched, and a new audit runs when it changes — this is the first audit.