eks-best-practicesAdvisory guidance for Amazon EKS architecture and configuration decisions — compute strategy, networking, security, reliability, cost, autoscaling, observability, multi-tenancy, and upgrade planning. Also answers Terraform configuration questions about…eks-cost-intelligenceRun a live EKS cluster cost efficiency assessment — analyze spending across 6 dimensions (compute efficiency, Spot/Graviton adoption, networking, storage, observability, idle resources), calculate a weighted 0-100 Cost Score, and generate a prioritized report…eks-platform-engineeringUse whenever someone is designing or building an Internal Developer Platform (IDP) or doing platform engineering on Amazon EKS — phrased as "build a developer platform", "self-service for developers", "golden paths", "IDP", or "set up Backstage / ArgoCD /…eks-reconEKS cluster reconnaissance and environment discovery. Detects compute strategy (Karpenter, MNG, Auto Mode, Fargate), IaC tooling (Terraform, CloudFormation, CDK, eksctl), CI/CD pipelines (GitHub Actions, GitLab, ArgoCD, Flux), add-on inventory, networking,…eks-securityUse whenever someone needs security or compliance guidance for Amazon EKS — phrased as "CIS Benchmark for EKS", "HIPAA / PCI-DSS / FedRAMP / SOC 2 / GDPR on EKS", "harden my EKS cluster", "Bottlerocket vs AL2023 vs RHEL/Ubuntu AMI", "EKS Pod Identity vs…eks-upgrade-checkAssess EKS cluster upgrade readiness — run automated checks across 8 areas (version, breaking changes, deprecated APIs, add-on compatibility, node readiness, workload risks, AWS Insights, upgrade plan), calculate a 0-100 readiness score with a hard-blocker…troubleshoot-platformSystematic troubleshooting for the PEEKS workshop platform — EKS clusters, Terraform state, ingress, load balancers, MCP tool failures, YAML validation. Use when something is broken, not deploying, or behaving unexpectedly. Also covers resource deletion…manage-addonsAdd, configure, or modify GitOps addons on the PEEKS platform. Use when adding a new addon, enabling an addon on a cluster, configuring addon values, troubleshooting addon deployment, or modifying hub-config.yaml. Do NOT use for general kubectl…
リポジトリエクスプローラー
aws-samples · リポジトリと代表的な skills - 3ページ
176 件の GitHub リポジトリにある 1,166 件の収集済み skills をリポジトリ単位で表示します。
team-review-cycleUse when implemented work needs an independent correctness, security, regression, performance, or verification review before completion.team-spec-workflowUse when non-trivial work needs durable requirements, architecture decisions, delegated task waves, independent review, or coordinated documentation.git-workflowUse when creating branches or commits, inspecting history or diffs, resolving conflicts, pushing changes, opening pull requests, or using worktrees.optimize-my-codexUse when auditing, modernizing, or migrating active Codex configuration under a user or agent home, especially models, effort, prompts, agents, hooks, rules, skills, plugins, or marketplaces.team-brainstormUse when team-style work starts from a rough project or feature idea rather than agreed requirements.team-coordinationUse when the user requests parallel delegation, role specialization, a lead-member workflow, or coordinated subagent execution.team-documentationUse when code, infrastructure, configuration, APIs, or workflows change what users, developers, or operators need to know.aws-security-guidelinesService-specific AWS security requirements and verification checklists for Codex. Use when creating, configuring, reviewing, or planning AWS resources, AWS IaC, deployment handoffs, production readiness, data security controls, or security reviews for…
all-devices-onDiscover the user's smart home devices and turn them on one by onefan-controlControl the smart fan - set power on/off, speed (0-3), and oscillation on/offled-controlControl the LED Matrix - set modes (rainbow, breathing, chase, sparkle, fire, ocean, aurora), brightness (0-100), power on/off, and static colorsoven-controlControl the smart oven - set power on/off, cooking mode (bake, broil, convection), and temperature (200-500 F)rice-cooker-controlControl the smart rice cooker - start cooking with different modes (white_rice, brown_rice, porridge, steam), stop cooking, and toggle keep warmcode-interpreterWrite and run real Python in a secure sandbox to answer any smart-home question that is better solved by *computing* than by reasoning — energy/telemetry data analysis, optimization (e.g. price-aware HVAC schedules), statistical anomaly detection, Monte-Carlo…browser-useOpen a real web browser to find live information on any website the user names or implies — product searches (Amazon / Taobao / eBay), current news, current prices/stock, live status pages, Wikipedia/article lookups, flight/hotel prices, or any question whose…user-feedbackRecord user feedback, bug reports, or feature requests to /mnt/workspace/feedback/ on the agent runtime's persistent session storage.
ara-moda-orchestratorOrchestrate Agentic Readiness Analysis (ARA) and Modernization Readiness Analysis (MODA) across a service portfolio using AWS Transform Continuous Modernization (atx ct), plus dependency-aware Execution Plan (EBA) generation via atx custom. Use when the user…agentic-readiness-analysisEvaluates whether systems are ready to be safely called by AI agents - covering APIs, identity, state management, human-in-the-loop, and observabilitymodernization-readiness-analysisScans portfolios for cloud-native maturity gaps and maps findings to AWS modernization pathwaysportfolio-agentic-readiness-analysisAggregates per-repo ARA reports into portfolio-level cross-cutting analysisportfolio-modernization-readiness-analysisAggregates per-repo MOD reports into portfolio-level roadmap and cross-cutting analysisbpmn-opportunity-analysisAnalyze BPMN 2.0 process models to identify agentic AI opportunities, classify by complexity and data readiness, assign autonomy levels, and produce a prioritized opportunity mapbridge-analysisCross-reference portfolio ARA and MOD reports into a unified bridge report mapping shared findings, quantifying the agentic-readiness dividend of modernization, and deduplicating remediationportfolio-bpmn-opportunity-analysisAggregate per-repo BAO reports into a portfolio-level view of cross-repo agent opportunity patterns, Bedrock consumption forecast, and consolidated implementation roadmap
detection-writing-sopStandard operating procedure for writing a Sigma or YARA detection rule and self-checking it before it goes to adversarial review. Use when authoring a new detection for a technique, log source, or malware family. Covers hypothesis framing, choosing Sigma vs…soc-triageGeneral true-positive / false-positive alert triage rubric for a SOC analyst. Use when any SIEM alert needs a disposition and the analyst must corroborate the signal across siem_query, asset_lookup, and enrich_ioc, assign a severity, decide…cve-asset-triageStandard operating procedure for correlating a single CVE to the specific assets it affects and computing the blast radius across the estate. Use when a CVE lands and the question is not just "how bad is it" but "which of MY hosts are actually affected, how…incident-ticketingStandard operating procedure for opening and annotating a security incident ticket at the end of a triage flow. Use when a triaged finding needs to be recorded as a ticket so a human can own containment and remediation. Covers the create_ticket field…multi-account-opsStandard operating procedure for triaging security/operations findings across a multi-account estate. Use when posture or ops findings arrive from several accounts and an analyst must query them with ops_query, decide which findings are noise versus which…soc-ip-lookupStandard operating procedure for triaging a single suspicious IP address in a SOC. Use when an IP arrives from an alert, firewall log, or threat feed and an analyst must decide whether it is malicious, whether it touched any asset in the estate, and whether…attack-path-reasoningStandard operating procedure for reasoning about attack paths from exposed assets using the MITRE ATT&CK framework. Use when analyzing how an adversary could move from an internet-facing or exposed asset toward crown-jewel targets, to enumerate plausible…cve-triage-rubricStandard operating procedure for triaging the impact of a CVE for a security operations team. Use when assessing a CVE's severity, exploitability, and asset impact, and deciding whether to patch, mitigate, monitor, or take no action. Combines CVSS, EPSS, and…
aws-database-backupExpert guide for backing up AWS databases including Amazon Relational Database Service (Amazon RDS), Aurora, MS-SQL, MySQL, and PostgreSQL. Use when planning or executing database backup operations, retention policies, or restore procedures. Covers Amazon…migration-computeCross-region migration for compute services including Amazon Elastic Compute Cloud (Amazon EC2), Amazon Elastic Container Service (Amazon ECS), and Amazon Elastic Kubernetes Service (Amazon EKS). Covers AZ failure recovery, AMI/snapshot migration, coldsnap…migration-databaseCross-region migration for database services including Amazon Relational Database Service (Amazon RDS), Amazon Aurora, Amazon Redshift, and Amazon ElastiCache. Covers snapshot copy and restore, cross-region read replica promotion, cross-region automated…migration-networkingCross-region migration for networking services including AWS Transit Gateway, AWS Site-to-Site VPN, AWS Client VPN, and AWS Direct Connect. Covers Transit Gateway recreation with VPC and Direct Connect gateway attachments, VPN tunnel configuration with…migration-securityCross-region migration for security services including ACM, AWS KMS, AWS IAM Identity Center, IAM/STS federation, and AWS WAF. Covers certificate re-issuance and validation, KMS key re-encryption workflows, Encryption SDK re-keying, IAM Identity Center…aws-logging-diagnosticsQuerying and analyzing CloudWatch Logs, CloudTrail events, and other AWS log sources. Use when investigating errors, auditing actions, or understanding what happened with an AWS resource.aws-network-diagnosticsDebugging AWS network connectivity issues including Amazon Virtual Private Cloud (Amazon VPC), security groups, network ACLs (NACLs), route tables, VPC endpoints, DNS, load balancers, and AWS Transit Gateway. Use when troubleshooting connectivity failures or…aws-preflight-checksPreflight validation for AWS CLI operations. Use before executing any AWS action to verify resource existence, permissions, quotas, and readiness. Covers Amazon S3, Amazon EC2, Amazon RDS, AWS Lambda, AWS IAM, Amazon ECS, Amazon DynamoDB, and other services.
build-and-formatRun build verification and code formatting across all RAPID project components (backend, frontend, CDK). Use after implementing code changes, before committing, after modifying Prisma schema, or before creating a pull request.deploy-cdk-stackDeploy RAPID application AWS infrastructure using CDK, including stack deployment, database migrations, and post-deployment verification. Use when explicitly asked to deploy, when running CDK bootstrap for first-time setup, or when deploying after code or…modify-cdk-workflowsModify CDK Step Functions workflows (ReviewProcessor and ChecklistProcessor) for the RAPID application, including workflow step changes, Map State concurrency, retry/timeout configuration, error handling, and parameter updates. Use when changing workflow step…plan-backend-frontendCreate implementation plans for backend API endpoints and frontend features following RAPID layered architecture (domain/usecase/routes pattern, SWR hooks, feature-based organization). Use when adding or modifying backend APIs, frontend components, database…ui-css-patternsUI/CSS design patterns and component reference for the RAPID frontend, covering color semantics, button variant selection, status badge colors, dark mode, spacing, and component inventory. Use when implementing UI components, choosing button variants or…modify-agent-promptsModify the review-item-processor agent's prompts, model configuration, confidence thresholds, JSON output schemas, and tool setup. Use when changing document or image review prompts, adjusting model IDs, modifying output format, updating citation settings, or…add-exampleAdd new example use cases to the Examples feature, including file setup, metadata registration, thumbnail generation, and link verification. Use when a contributor provides PDF/PNG/TXT files for a new use case, when adding entries to the Examples page, or…test-database-featureRun repository integration tests against a local MySQL database for the RAPID backend. Use after implementing new repository methods, modifying Prisma database schema, testing use cases that depend on database access, or verifying data access patterns.
searchingSearch for information across unstructured documents (hybrid search, knowledge graph) AND structured datasets (Text2SQL over spreadsheet tables). Use when the user asks questions, requests information lookup, needs explanations, summaries, comparisons, or…pptxPowerPoint presentation (.pptx) creation, editing, reading, and manipulation skill. Use when the user wants to create, read, edit, or manipulate PowerPoint presentations (.pptx files). Triggers include: any mention of 'slides', 'deck', 'presentation',…chartData chart and graph creation skill using Matplotlib. Use when the user wants to create data visualizations — bar charts, line charts, pie charts, scatter plots, heatmaps, histograms, or any data-driven graph. Triggers include: any mention of 'chart',…docxWord document (.docx) creation, editing, reading, and manipulation skill. Use when the user wants to create, read, edit, or manipulate Word documents (.docx files). Triggers include: any mention of 'Word doc', 'word document', '.docx', or requests for…xlsxExcel spreadsheet (.xlsx) creation, editing, reading, and manipulation skill. Use when the user wants to create, read, edit, or manipulate Excel spreadsheets (.xlsx, .xlsm, .csv, .tsv files). Triggers include: any mention of 'spreadsheet', 'Excel', '.xlsx',…diagramDiagram creation skill using Mermaid syntax — flowcharts, sequence diagrams, ER diagrams, Gantt charts, mindmaps, and more. Use when the user wants to create structural or process diagrams — NOT data charts. Triggers include: 'flowchart', 'flow diagram',…markdownMarkdown document (.md) creation and editing skill. Use when the user wants to create or edit Markdown files (.md). Triggers include: any mention of 'markdown', '.md', or requests for documents where Markdown is the appropriate format — such as README files,…qa-analysisAdd additional QA analysis to document segments. When the user asks for additional analysis, deeper analysis, more questions about a specific document or segment. Triggers: '추가분석', 'additional analysis', 'analyze more', 'add QA', or when asking to examine a…
chaos-engineering-on-awsRun chaos engineering experiments on AWS using FIS (+ optional Chaos Mesh) with automated monitoring and rollback. Use when the user wants to validate system resilience through controlled fault injection, run chaos experiments on AWS infrastructure, test…eks-resilience-checkerAssess Amazon EKS cluster resilience against 26 best practice checks covering application workloads, control plane, and data plane. Outputs structured assessment.json for chaos-engineering-on-aws integration. Use when the user wants to evaluate EKS cluster…selfhosted-stack-analyzerMap the topology and analyze resilience weaknesses of self-hosted stateful middleware (MySQL, TiDB, TiKV, PD, Redis, Kafka, ZooKeeper) running as workloads on Amazon EKS, OR directly on dedicated EC2 hosts distinguished by their EC2 Name tag. Runs in two…aws-well-architected-reviewConduct automated AWS Well-Architected Framework Review across all 6 pillars. Use when the user wants a full architecture review, security assessment, cost optimization, reliability check, performance audit, or sustainability evaluation of their AWS…cjis-reviewerAssess AWS environments against CJIS Security Policy v6.0 (NIST 800-53 control families), perform gap analyses, and generate assessment reports to guide compliance readiness. Use this skill whenever a user wants to check CJIS readiness, prepare for a…ferpa-reviewerAssess AWS environments against FERPA (Family Educational Rights and Privacy Act, 20 U.S.C. § 1232g; 34 CFR Part 99) and common state student-privacy laws, perform gap analyses, and produce assessment reports for EdTech vendors and K-12 / higher-ed…aws-resilience-modelingConduct comprehensive AWS system architecture resilience analysis and risk identification. Use when the user wants to perform architecture analysis, identify failure modes, map system components and dependencies, assess risk priorities, or create disaster…rma-assessment-assistantIntelligent RMA (Reliability, Maintainability, Availability) Resilience Maturity Assessment Assistant. Conducts interactive maturity questionnaire based on AWS Well-Architected Framework to evaluate application resilience maturity level, automatically…
llm-gateway-governanceBuild a governed LLM gateway that lets internal developers use code agents (Claude Code, Codex) against Amazon Bedrock through a single control point — enforcing identity, per-user virtual keys, model/cost tiering, Bedrock Guardrails, managed web search, and…unified-customer-profileBuild a production-ready unified customer profile system on AWS using Connect Customer Profiles + Entity Resolution + Bedrock AI. Generates a full CDK TypeScript project with Lambda handlers, React + shadcn/ui frontend, ETL scripts, and Calculated Attributes.…data-platform-consumptionConnect existing data sources to Amazon Quick (Quick Sight + chat agents) for visualization and natural language analytics. Works with any queryable data: Glue Catalog, Athena, Redshift, or S3. Sets up dashboards, SPICE caching, and AI-powered chat agents for…data-platform-pipelineBuild a production-ready serverless data lake pipeline on AWS. Creates S3 storage (3-bucket layout), Glue Catalog, ETL jobs, IAM roles, and Athena query layer. Use for AWS Data Lab builds, new data platform setup, or adding data sources to an existing lake.…db-migration-agentPlan and execute production database migrations to AWS managed services — MySQL, MariaDB, PostgreSQL, Oracle, SQL Server, Db2 (on EC2, on-premises, or another cloud) to Amazon Aurora or Amazon RDS, homogeneous or heterogeneous. Covers environment preflight,…graph-personalizationBuild a Customer Similarity Graph + Bedrock-explainable recommendation system on AWS using Amazon Neptune (graph DB) + Bedrock Claude + Kinesis (real-time updates) + React Admin UI. Generates production-ready CDK with Graph schema per industry (e-commerce /…strands-agentcore-multi-agentBuild a production-ready multi-agent system on AWS using Strands Agents + Amazon Bedrock AgentCore (Runtime + Gateway + Memory). Generates an Orchestrator agent that classifies user intent and routes to (a) MCP servers via Gateway, (b) specialized Strands…exampleTEMPLATE — Replace with one paragraph that describes what this skill builds and when it should activate. Include trigger keywords, e.g., "build me a customer profile system". This text drives skill activation matching across Claude Code, Kiro, and Quick.
sdlc-agents-provision-awsUse when the user is ready to provision AWS infrastructure for their selected SDLC agents — IAM runtime roles, ECR repositories, and Bedrock AgentCore Runtimes. Reads the agent selection from .sdlc-agents/selection.yaml. Idempotent. Invoked by sdlc-agents…sdlc-agents-register-triggersUse when the user's agents are provisioned and integrations are connected, and they need to enable the event triggers that make agents actually respond to @mentions. Registers Asana webhooks, enables the GitHub Actions dispatch workflow, configures Slack app…sdlc-agents-connect-githubUse when the user needs to connect SDLC agents to GitHub. Walks through installing GitHub's official remote MCP server access, capturing credentials, configuring the deploy-role OIDC trust, and verifying agent + CI paths. Knows the specific GitHub pitfalls…sdlc-agents-setup-claude-codeUse when the user wants to enable Claude Code on Amazon Bedrock in their GitHub repo so @claude can respond on issues, code against issues, and review pull requests. Installs the claude-code.yml workflow, configures the Bedrock IAM role + OIDC trust, and…sdlc-agents-selectUse when the user needs to pick which SDLC agents to install based on the tools they already use. Filters the full fleet roster against the user's integrations, presents a short opinionated recommendation, and records the selection to…sdlc-agentsUse when the user wants to install, configure, or onboard the SDLC Agent Fleet (workitems, researcher, docwriter, and others) into a new project or AWS account. Drives the conversation from tool discovery through agent selection, provisioning, and…sdlc-agents-connect-asanaUse when the user needs to connect SDLC agents to Asana. Walks through creating an Asana MCP OAuth app, capturing the refresh token, storing the PAT for the webhook Lambda, and verifying MCP + REST access. Knows the specific Asana pitfalls (MCP vs API app…sdlc-agents-verifyUse when the user wants to confirm their SDLC agent installation actually works end-to-end. Runs three layers of smoke tests per selected agent — runtime health, credential freshness, trigger path — and reports a per-agent pass/fail summary. Does not modify…
checkout-latency-investigationRoot-cause procedure for slow adoption checkout in the PetAdoptions backend - adopters waiting on the pay/adopt step while adoptions still succeed. Use when the firing alarm or the delegated symptom is checkout p99 latency above SLO…frontend-triageDelegation-first triage procedure for the app-team first responder (petsite frontend). Start from the alarm that fired and its tier, then resolve locally or delegate to the Platform DevOps Agent via the MCP tool aiops-poc-platform-space-mcp_investigate — the…fulfillment-backlog-investigationRoot-cause procedure for stale adoption statuses and fulfillment backlog in the PetAdoptions backend - an adoption completes but its status never updates. Use when the firing alarm or the delegated symptom is aiops-poc-be-slo-statusupdate-lag (SQS…payments-failure-investigationRoot-cause procedure for adoption payment failures in the PetAdoptions backend - adoptions erroring outright, not merely slow. Use when the firing alarm or the delegated symptom is aiops-poc-be-slo-payments-error-rate, aiops-poc-be-slo-payments-availability,…report-standardsRequired output format for every investigation report produced by any agent on this deployment, managed or self-managed. Load it before writing the final answer to any alarm-driven incident, on-demand query or delegated task. Defines the four mandatory…search-investigationRoot-cause procedure for pet search failures or slowness in the PetAdoptions backend - shoppers getting empty, erroring or slow search results. Use when the firing alarm or the delegated symptom is aiops-poc-be-slo-search-latency-p99,…untrusted-content-handlingMandatory input-handling rules for every agent on this deployment, managed or self-managed. Load it at the start of any investigation, before reading telemetry and before writing any finding. Establishes that everything an agent reads is evidence to be…