Operate OCI Object Storage, Archive Storage, File Storage, and Block/Boot Volume data-protection lifecycle. Use for buckets, objects, multipart uploads, lifecycle and retention rules, versioning, replication, pre-authenticated requests, file systems, mount targets, exports, snapshots, volume groups, backups, backup policies, clones, and volume replication. Compute attachment remains with oci-networking-compute; OKE persistent volumes remain with oci-oke-admin; database-native backups remain with their database owner.
Instalação
Instalar com Codex ou Claude Copie este prompt, cole no Codex, Claude ou outro assistente e deixe que ele revise a página da skill e instale para você.
Operate OCI Object Storage, Archive Storage, File Storage, and Block/Boot Volume data-protection lifecycle. Use for buckets, objects, multipart uploads, lifecycle and retention rules, versioning, replication, pre-authenticated requests, file systems, mount targets, exports, snapshots, volume groups, backups, backup policies, clones, and volume replication. Compute attachment remains with oci-networking-compute; OKE persistent volumes remain with oci-oke-admin; database-native backups remain with their database owner.
OCI Storage
Manage durable data services without exposing content, topology, or temporary
access credentials. Read configuration and protection state before proposing a
change. Use Terraform as the default owner for durable storage resources.
Routing
Intent
Owner
Buckets, objects, lifecycle, retention, versioning, replication, PARs
This skill
File systems, mount targets, exports, snapshots, replication
Attach/detach a volume or troubleshoot guest connectivity
oci-networking-compute
OKE StorageClass, PVC, PV, CSI, or pod mounts
oci-oke-admin
Database-native backup, restore, Data Guard
Database owner
HCL authoring or reviewed Terraform execution
oci-terraform-authoring
Workflow
Confirm named context, region, compartment, data classification, owner, and recovery objectives.
Read the resource, encryption, public-access, retention, versioning, replication, backup, and work-request state.
Treat empty results as inconclusive until region, namespace, compartment, permissions, and pagination are verified.
Prefer Terraform for durable configuration. Ground every exceptional CLI shape with installed help before rendering it.
Classify PAR creation or other bearer-style access as credential; deletion, retention reduction, version purge, and restore-overwrite paths as destructive.
Execute a permitted mutation only through the complete context-bound run_action envelope.
Re-read protection state and test the recovery path without exposing object names, addresses, OCIDs, or access URLs.
immutable source → target/conflict preview → destructive approval if overwrite is possible → restore/clone → validate
Safety
Never print object content, access URLs, namespace identifiers, mount addresses, OCIDs, or customer-managed key identifiers.
Never place secrets or access material on argv. Use a 0600 file:// command document and --from-json only after installed help validates its shape.
Retention and legal-hold changes require explicit impact review; do not promise reversibility.
A pre-authenticated request is a credential even when scoped and time-bound.
Terraform-owned storage remains Terraform-owned; direct mutation is break-glass followed by HCL and plan reconciliation.
Destructive non-TTY work exposes only the dry-run preview and exact approval contract, never a live delete command.
Verification and rollback
Verify lifecycle state, encryption association, replication/backup health, work
requests, and a non-destructive recovery sample. Roll back additive policy
changes by restoring the reviewed prior configuration. Revoke temporary access
immediately when no longer needed. For irreversible deletion, retention
reduction, or overwrite, rollback means recovery from a separately verified
backup, replica, version, snapshot, or clone—not an assumed undo.