Install any skill in seconds. Free to start, no credit card required.
Get Started Free →Patrones de arquitectura Spring Boot, diseño de API REST, servicios en capas, acceso a datos, caché, procesamiento asíncrono y logging. Usar para trabajo de backend en Java con Spring Boot.
.claude/skills/affaan-m-springboot-patterns/SKILL.md| Test case | Without → With | Effect | Δ tokens | Δ turns |
|---|---|---|---|---|
| case-01 | ✗→✓ | ▲ Improved | 62% | 0% |
| case-03 | ✗→✓ | ▲ Improved | 127% | 0% |
| case-19 | ✓→✓ | = Same ✓ | 110% | 0% |
| case-02 | ✓→✓ | = Same ✓ | 88% | 0% |
| case-04 | ✓→✓ | = Same ✓ | 116% | 0% |
用于可扩展、生产级服务的 Spring Boot 架构和 API 模式。
java@RestController @RequestMapping("/api/markets") @Validated class MarketController { private final MarketService marketService; MarketController(MarketService marketService) { this.marketService = marketService; } @GetMapping ResponseEntity<Page<MarketResponse>> list( @RequestParam(defaultValue = "0") int page, @RequestParam(defaultValue = "20") int size) { Page<Market> markets = marketService.list(PageRequest.of(page, size)); return ResponseEntity.ok(markets.map(MarketResponse::from)); } @PostMapping ResponseEntity<MarketResponse> create(@Valid @RequestBody CreateMarketRequest request) { Market market = marketService.create(request); return ResponseEntity.status(HttpStatus.CREATED).body(MarketResponse.from(market)); } }
javapublic interface MarketRepository extends JpaRepository<MarketEntity, Long> { @Query("select m from MarketEntity m where m.status = :status order by m.volume desc") List<MarketEntity> findActive(@Param("status") MarketStatus status, Pageable pageable); }
java@Service public class MarketService { private final MarketRepository repo; public MarketService(MarketRepository repo) { this.repo = repo; } @Transactional public Market create(CreateMarketRequest request) { MarketEntity entity = MarketEntity.from(request); MarketEntity saved = repo.save(entity); return Market.from(saved); } }
javapublic record CreateMarketRequest( @NotBlank @Size(max = 200) String name, @NotBlank @Size(max = 2000) String description, @NotNull @FutureOrPresent Instant endDate, @NotEmpty List<@NotBlank String> categories) {} public record MarketResponse(Long id, String name, MarketStatus status) { static MarketResponse from(Market market) { return new MarketResponse(market.id(), market.name(), market.status()); } }
java@ControllerAdvice class GlobalExceptionHandler { @ExceptionHandler(MethodArgumentNotValidException.class) ResponseEntity<ApiError> handleValidation(MethodArgumentNotValidException ex) { String message = ex.getBindingResult().getFieldErrors().stream() .map(e -> e.getField() + ": " + e.getDefaultMessage()) .collect(Collectors.joining(", ")); return ResponseEntity.badRequest().body(ApiError.validation(message)); } @ExceptionHandler(AccessDeniedException.class) ResponseEntity<ApiError> handleAccessDenied() { return ResponseEntity.status(HttpStatus.FORBIDDEN).body(ApiError.of("Forbidden")); } @ExceptionHandler(Exception.class) ResponseEntity<ApiError> handleGeneric(Exception ex) { // Log unexpected errors with stack traces return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR) .body(ApiError.of("Internal server error")); } }
需要在配置类上使用 @EnableCaching。
java@Service public class MarketCacheService { private final MarketRepository repo; public MarketCacheService(MarketRepository repo) { this.repo = repo; } @Cacheable(value = "market", key = "#id") public Market getById(Long id) { return repo.findById(id) .map(Market::from) .orElseThrow(() -> new EntityNotFoundException("Market not found")); } @CacheEvict(value = "market", key = "#id") public void evict(Long id) {} }
需要在配置类上使用 @EnableAsync。
java@Service public class NotificationService { @Async public CompletableFuture<Void> sendAsync(Notification notification) { // send email/SMS return CompletableFuture.completedFuture(null); } }
java@Service public class ReportService { private static final Logger log = LoggerFactory.getLogger(ReportService.class); public Report generate(Long marketId) { log.info("generate_report marketId={}", marketId); try { // logic } catch (Exception ex) { log.error("generate_report_failed marketId={}", marketId, ex); throw ex; } return new Report(); } }
java@Component public class RequestLoggingFilter extends OncePerRequestFilter { private static final Logger log = LoggerFactory.getLogger(RequestLoggingFilter.class); @Override protected void doFilterInternal(HttpServletRequest request, HttpServletResponse response, FilterChain filterChain) throws ServletException, IOException { long start = System.currentTimeMillis(); try { filterChain.doFilter(request, response); } finally { long duration = System.currentTimeMillis() - start; log.info("req method={} uri={} status={} durationMs={}", request.getMethod(), request.getRequestURI(), response.getStatus(), duration); } } }
javaPageRequest page = PageRequest.of(pageNumber, pageSize, Sort.by("createdAt").descending()); Page<Market> results = marketService.list(page);
javapublic <T> T withRetry(Supplier<T> supplier, int maxRetries) { int attempts = 0; while (true) { try { return supplier.get(); } catch (Exception ex) { attempts++; if (attempts >= maxRetries) { throw ex; } try { Thread.sleep((long) Math.pow(2, attempts) * 100L); } catch (InterruptedException ie) { Thread.currentThread().interrupt(); throw ex; } } } }
安全须知:默认情况下 X-Forwarded-For 头是不可信的,因为客户端可以伪造它。 仅在以下情况下使用转发头:
ForwardedHeaderFilter 注册为 beanserver.forward-headers-strategy=NATIVE 或 FRAMEWORKX-Forwarded-For 头当 ForwardedHeaderFilter 被正确配置时,request.getRemoteAddr() 将自动从转发的头中返回正确的客户端 IP。 没有此配置时,请直接使用 request.getRemoteAddr()——它返回的是直接连接的 IP,这是唯一可信的值。
java@Component public class RateLimitFilter extends OncePerRequestFilter { private final Map<String, Bucket> buckets = new ConcurrentHashMap<>(); /* * SECURITY: This filter uses request.getRemoteAddr() to identify clients for rate limiting. * * If your application is behind a reverse proxy (nginx, AWS ALB, etc.), you MUST configure * Spring to handle forwarded headers properly for accurate client IP detection: * * 1. Set server.forward-headers-strategy=NATIVE (for cloud platforms) or FRAMEWORK in * application.properties/yaml * 2. If using FRAMEWORK strategy, register ForwardedHeaderFilter: * * @Bean * ForwardedHeaderFilter forwardedHeaderFilter() { * return new ForwardedHeaderFilter(); * } * * 3. Ensure your proxy overwrites (not appends) the X-Forwarded-For header to prevent spoofing * 4. Configure server.tomcat.remoteip.trusted-proxies or equivalent for your container * * Without this configuration, request.getRemoteAddr() returns the proxy IP, not the client IP. * Do NOT read X-Forwarded-For directly—it is trivially spoofable without trusted proxy handling. */ @Override protected void doFilterInternal(HttpServletRequest request, HttpServletResponse response, FilterChain filterChain) throws ServletException, IOException { // Use getRemoteAddr() which returns the correct client IP when ForwardedHeaderFilter // is configured, or the direct connection IP otherwise. Never trust X-Forwarded-For // headers directly without proper proxy configuration. String clientIp = request.getRemoteAddr(); Bucket bucket = buckets.computeIfAbsent(clientIp, k -> Bucket.builder() .addLimit(Bandwidth.classic(100, Refill.greedy(100, Duration.ofMinutes(1)))) .build()); if (bucket.tryConsume(1)) { filterChain.doFilter(request, response); } else { response.setStatus(HttpStatus.TOO_MANY_REQUESTS.value()); } } }
使用 Spring 的 @Scheduled 或与队列(如 Kafka、SQS、RabbitMQ)集成。保持处理程序是幂等的和可观察的。
spring.mvc.problemdetails.enabled=true 以获得 RFC 7807 错误 (Spring Boot 3+)@Transactional(readOnly = true)@NonNull 和 Optional 强制执行空值安全记住:保持控制器精简、服务专注、仓库简单,并集中处理错误。为可维护性和可测试性进行优化。
| Case | Status | Duration (ms) | Turns | Tokens | Tool calls | ||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Without | With | Δ | Without | With | Δ | Without | With | Δ | Without | With | Δ | ||
case-19 | pass→pass | 13,098 | 15,054 | +15% | 1 | 1 | 0% | 2,589 | 5,447 | +110% | 0 | 0 | — |
case-01 | fail→pass | 16,858 | 14,386 | -15% | 1 | 1 | 0% | 3,396 | 5,488 | +62% | 0 | 0 | — |
case-02 | pass→pass | 11,440 | 8,739 | -24% | 1 | 1 | 0% | 2,144 | 4,040 | +88% | 0 | 0 | — |
case-03 | fail→pass | 11,849 | 12,093 | +2% | 1 | 1 | 0% | 2,123 | 4,820 | +127% | 0 | 0 | — |
case-04 | pass→pass | 9,679 | 8,991 | -7% | 1 | 1 | 0% | 1,862 | 4,019 | +116% | 0 | 0 | — |
case-05 | pass→pass | 3,175 | 3,087 | -3% | 1 | 1 | 0% | 610 | 3,128 | +413% | 0 | 0 | — |
case-06 | pass→pass | 11,534 | 9,904 | -14% | 1 | 1 | 0% | 2,458 | 4,486 | +83% | 0 | 0 | — |
case-07 | pass→pass | 9,552 | 8,714 | -9% | 1 | 1 | 0% | 2,048 | 4,373 | +114% | 0 | 0 | — |
case-08 | pass→pass | 8,993 | 7,491 | -17% | 1 | 1 | 0% | 1,712 | 4,023 | +135% | 0 | 0 | — |
case-09 | pass→pass | 6,951 | 6,372 | -8% | 1 | 1 | 0% | 1,451 | 3,710 | +156% | 0 | 0 | — |
case-10 | pass→pass | 10,415 | 8,634 | -17% | 1 | 1 | 0% | 2,054 | 4,195 | +104% | 0 | 0 | — |
case-11 | pass→pass | 13,722 | 10,079 | -27% | 1 | 1 | 0% | 2,619 | 4,313 | +65% | 0 | 0 | — |
case-12 | pass→pass | 5,822 | 3,048 | -48% | 1 | 1 | 0% | 1,195 | 3,087 | +158% | 0 | 0 | — |
case-13 | pass→pass | 13,728 | 13,513 | -2% | 1 | 1 | 0% | 2,601 | 5,208 | +100% | 0 | 0 | — |
case-14 | pass→pass | 13,391 | 13,042 | -3% | 1 | 1 | 0% | 2,652 | 5,273 | +99% | 0 | 0 | — |
case-15 | fail→fail | 10,478 | 6,473 | -38% | 1 | 1 | 0% | 2,151 | 3,808 | +77% | 0 | 0 | — |
case-16 | pass→pass | 15,285 | 13,122 | -14% | 1 | 1 | 0% | 2,912 | 5,004 | +72% | 0 | 0 | — |
case-17 | pass→pass | 12,027 | 7,919 | -34% | 1 | 1 | 0% | 2,169 | 4,100 | +89% | 0 | 0 | — |
case-18 | pass→pass | 8,071 | 6,618 | -18% | 1 | 1 | 0% | 1,436 | 3,633 | +153% | 0 | 0 | — |
case-20 | pass→pass | 10,822 | 10,346 | -4% | 1 | 1 | 0% | 2,333 | 4,453 | +91% | 0 | 0 | — |
case-21 | pass→pass | 13,367 | 9,684 | -28% | 1 | 1 | 0% | 2,456 | 4,503 | +83% | 0 | 0 | — |
case-22 | pass→pass | 11,851 | 11,832 | -0% | 1 | 1 | 0% | 2,699 | 5,001 | +85% | 0 | 0 | — |
DecimalAI ran this skill against gemini-3.6-flash twice over the same eval suite — once with the skill loaded and once without — and compared the two runs case by case. 22 cases were attempted. The headline lift of +9 percentage points is the difference between those two pass rates over the 22 comparable cases.
Without the skill loaded, the model failed this case. With it loaded, the same prompt on the same model passed. This is one improved case from the latest verified run; every case, including any that regressed, is in the table above.
Other measured skills in the registry, with their headline benchmark lift.