AWS Cdk Development
zxkane/aws-skills
AWS Cloud Development Kit (CDK) expert for building cloud infrastructure with TypeScript/Python.
Deploy, diff, or destroy the ABCA CDK stack. An agent skill from aws-samples/sample-autonomous-cloud-coding-agents.
$ npx skills add aws-samples/sample-autonomous-cloud-coding-agents --skill deploy -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install aws-samples/sample-autonomous-cloud-coding-agents deploy --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/aws-samples/sample-autonomous-cloud-coding-agents.git skills-src && mkdir -p .claude/skills && cp -r skills-src/docs/abca-plugin/skills/deploy .claude/skills/deploy && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "deploy" agent skill from https://github.com/aws-samples/sample-autonomous-cloud-coding-agents/tree/main/docs/abca-plugin/skills/deploy into .claude/skills/deploy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "deploy", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/aws-samples/sample-autonomous-cloud-coding-agents/tree/main/docs/abca-plugin/skills/deployType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add aws-samples/sample-autonomous-cloud-coding-agents --skill deploy -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install aws-samples/sample-autonomous-cloud-coding-agents deploy --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aws-samples/sample-autonomous-cloud-coding-agents.git skills-src && mkdir -p .agents/skills && cp -r skills-src/docs/abca-plugin/skills/deploy .agents/skills/deploy && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "deploy" agent skill from https://github.com/aws-samples/sample-autonomous-cloud-coding-agents/tree/main/docs/abca-plugin/skills/deploy into .agents/skills/deploy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "deploy", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add aws-samples/sample-autonomous-cloud-coding-agents --skill deploy -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install aws-samples/sample-autonomous-cloud-coding-agents deploy --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aws-samples/sample-autonomous-cloud-coding-agents.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/docs/abca-plugin/skills/deploy .cursor/skills/deploy && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "deploy" agent skill from https://github.com/aws-samples/sample-autonomous-cloud-coding-agents/tree/main/docs/abca-plugin/skills/deploy into .cursor/skills/deploy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "deploy", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/aws-samples/sample-autonomous-cloud-coding-agents.git --path docs/abca-plugin/skills/deploy--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add aws-samples/sample-autonomous-cloud-coding-agents --skill deploy -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install aws-samples/sample-autonomous-cloud-coding-agents deploy --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aws-samples/sample-autonomous-cloud-coding-agents.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/docs/abca-plugin/skills/deploy .gemini/skills/deploy && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "deploy" agent skill from https://github.com/aws-samples/sample-autonomous-cloud-coding-agents/tree/main/docs/abca-plugin/skills/deploy into .gemini/skills/deploy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "deploy", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install aws-samples/sample-autonomous-cloud-coding-agents deployInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add aws-samples/sample-autonomous-cloud-coding-agents --skill deploy -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/aws-samples/sample-autonomous-cloud-coding-agents.git skills-src && mkdir -p .github/skills && cp -r skills-src/docs/abca-plugin/skills/deploy .github/skills/deploy && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "deploy" agent skill from https://github.com/aws-samples/sample-autonomous-cloud-coding-agents/tree/main/docs/abca-plugin/skills/deploy into .github/skills/deploy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "deploy", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add aws-samples/sample-autonomous-cloud-coding-agents --skill deploy -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install aws-samples/sample-autonomous-cloud-coding-agents deploy --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aws-samples/sample-autonomous-cloud-coding-agents.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/docs/abca-plugin/skills/deploy .opencode/skills/deploy && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "deploy" agent skill from https://github.com/aws-samples/sample-autonomous-cloud-coding-agents/tree/main/docs/abca-plugin/skills/deploy into .opencode/skills/deploy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "deploy", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
deployDeploy, diff, or destroy the ABCA CDK stack. An agent skill from aws-samples/sample-autonomous-cloud-coding-agents.
Deploy is an agent skill from aws-samples/sample-autonomous-cloud-coding-agents, published by the product's own GitHub organization. Deploy, diff, or destroy the ABCA CDK stack. Handles pre-deployment validation, synthesis, and post-deployment verification. Use when the user says "deploy", "cdk deploy", "deploy the stack", "destroy", "cdk diff", "what changed", "redeploy", or "update the stack".
Its SKILL.md is about 1.4k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in DevOps & Cloud, covering Deployment. It works with Amazon Web Services. The repository describes itself as: Autonomous background coding agents on AWS. Turn tasks into pull requests via isolated runtimes, with built-in orchestration, observability, and governance. The licence is MIT-0.
4 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit cd9bc54. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
miseawsdockercurlFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use aws, docker and curl, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Deploy loads about 1.4k tokens when it runs. Until then it costs about 68 tokens; SKILL.md has 648 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from aws-samples/sample-autonomous-cloud-coding-agents at commit cd9bc54, republished under its MIT-0 licence (© aws-samples). 648 words, ~1,434 tokens.
.claude/skills/deploy/SKILL.md (or your agent's skills folder).You are managing CDK deployment for the ABCA platform. Determine the user's intent and execute the appropriate workflow.
Ask the user (or infer from context) which action they want:
Before any deployment action, verify:
Build is clean:
export MISE_EXPERIMENTAL=1
mise run buildThis runs agent quality checks, CDK compilation + tests, CLI build, and docs build. Do NOT deploy if the build fails. Note: a passing build is noisy — it prints many ERROR/WARN and cdk-nag lines from test fixtures. Trust the exit code (0 = pass), not the log volume.
Docker is running — Required for CDK asset bundling.
Build host architecture — The agent image targets linux/arm64 (AgentCore is Graviton). On an x86_64 host without QEMU/binfmt, the deploy fails partway with exec /bin/sh: exec format error. Register emulation once with docker run --privileged --rm tonistiigi/binfmt --install arm64, or deploy from a native arm64 host (Graviton / Apple Silicon). Skip on arm64 hosts.
AWS credentials are configured — aws sts get-caller-identity (confirm it's the intended account/region).
export MISE_EXPERIMENTAL=1
mise //cdk:deploy -- --require-approval never--require-approval never lets the deploy run unattended. In a non-interactive shell (CI, agent, script) it's required — without it, cdk deploy hangs forever on the IAM/security-group approval prompt. Drop the flag if you're deploying interactively and want to review those changes.
After successful deployment, retrieve and display stack outputs:
aws cloudformation describe-stacks --stack-name backgroundagent-dev \
--query 'Stacks[0].Outputs' --output tableKey outputs to highlight: ApiUrl, RuntimeArn, UserPoolId, AppClientId, GitHubTokenSecretArn.
export MISE_EXPERIMENTAL=1
mise //cdk:diffSummarize the changes: new resources, modified resources, removed resources. Flag any potentially destructive changes (resource replacements, security group changes).
CRITICAL: Ask for explicit confirmation before destroying. Use AskUserQuestion to confirm, explaining consequences.
export MISE_EXPERIMENTAL=1
mise //cdk:destroyTeardown can stall in DELETE_FAILED on a security group / private subnet: AgentCore injects service-managed (Hyperplane) ENIs into the VPC, and AWS reclaims them asynchronously (~20–40 min) after the runtime is gone. Wait for the ENIs to clear, then retry mise //cdk:destroy. Do not force-delete past the stuck VPC resources (--deletion-mode FORCE_DELETE_STACK / retaining them) — that orphans the VPC, and VPCs are quota-capped per Region. Also note: a first-create failure leaves the stack in ROLLBACK_COMPLETE, which can't be updated — destroy and redeploy fresh.
export MISE_EXPERIMENTAL=1
mise //cdk:synthOutput goes to cdk/cdk.out/. Useful for reviewing generated CloudFormation templates.
After a successful deploy, remind the user to:
bgagent repo onboard <owner/repo> is a runtime operation (no redeploy) that works when the repo can use the platform/default-blueprint setup — the default GitHub token secret, an already-granted model, and the default egress allowlist. A repo that needs its own config — a per-repo GitHub token, a model not yet granted to the runtime, custom egress domains, Cedar HITL policies, or system-prompt overrides — needs a dedicated CDK Blueprint construct and a redeploy (with the correct permissions). See the onboard-repo skill for both paths.bgagent platform doctor smoke-checks the API, Cognito, GitHub token, Bedrock model access, and onboarded repos — confirm everything is green first.curl -s -H "Authorization: $TOKEN" $API_URL/tasks.mise //cdk:bootstrap provisions a custom least-privilege CloudFormation execution role by default — NOT AdministratorAccess (ADR-002). It deploys cdk/bootstrap/bootstrap-template.yaml, which creates scoped IaCRole-ABCA-* managed policies (Infrastructure / Application / Observability) generated from cdk/src/bootstrap/policies/.
A consequence worth knowing when you add a new resource type or a new feature on an existing resource: the scoped role must allow the IAM action CloudFormation will call, or the deploy rolls back with AccessDenied on that action (e.g. s3:PutBucketVersioning, lambda:TagResource). The fix is to add the action to the relevant policy in cdk/src/bootstrap/policies/, regenerate (mise //cdk:bootstrap:generate), re-bootstrap, and redeploy. The policy source and the DEPLOYMENT_ROLES.md golden doc are kept in sync by tests.
See docs/design/DEPLOYMENT_ROLES.md for the complete IAM policies, trust policy, runtime role inventory, and tightening recommendations.
© aws-samples, MIT-0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in docs/abca-plugin/skills/deploy of aws-samples/sample-autonomous-cloud-coding-agents.
Open the folder on GitHubat commit cd9bc54
Deploy next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Deploy this skillaws-samples/sample-autonomous-cloud-coding-agents | 157 | — | ~1.4k | Automated safety check: Pass | MIT-0 | |
| AWS Cdk Developmentzxkane/aws-skills | 367 | 2 repos | ~2.5k | Automated safety check: Pass | MIT | |
| Senior DevOps Toolkitmaslennikov-ig/claude-code-orchestrator-kit | 259 | 6 repos | ~1.1k | Automated safety check: Notes | Custom licence | |
| Ecspressokayac/ecspresso | 1.1k | — | ~1.4k | Automated safety check: Pass | MIT | |
| Spa Create Configsplunk/splunk-platform-automator | 137 | — | ~3.5k | Automated safety check: Pass | Proprietary | |
| AWS Agentic AIzxkane/aws-skills | 367 | 1 repos | ~2.5k | Automated safety check: Pass | MIT |
zxkane/aws-skills
AWS Cloud Development Kit (CDK) expert for building cloud infrastructure with TypeScript/Python.
maslennikov-ig/claude-code-orchestrator-kit
Comprehensive DevOps skill for CI/CD, infrastructure automation, containerization, and cloud platforms (AWS, GCP, Azure). Includes pipeline setup…
kayac/ecspresso
ECS deployment tool - deploy, manage, and troubleshoot ECS services
splunk/splunk-platform-automator
A skill your agent uses when creating or updating splunkconfig.yml, designing Splunk Enterprise lab topology, multisite IDXC, SHC layout, architecture plan before config, or AWS Terraform block for…
zxkane/aws-skills
AWS Bedrock AgentCore comprehensive expert for deploying and managing AI agents at scale.
karmab/kcli
Guides deployment and management of Kubernetes clusters with kcli.
aws-samples/sample-autonomous-cloud-coding-agents
Onboard a new GitHub repository to the ABCA platform so the agent can target it.
aws-samples/sample-autonomous-cloud-coding-agents
Guided installation and first-time setup for ABCA. An agent skill from aws-samples/sample-autonomous-cloud-coding-agents.
aws-samples/sample-autonomous-cloud-coding-agents
Submit a coding task to the ABCA platform via CLI or REST API.
aws-samples/sample-autonomous-cloud-coding-agents
Diagnose and fix common ABCA issues: deployment failures, preflight errors, authentication problems, agent failures, and build issues.
aws-samples/sample-autonomous-cloud-coding-agents
Check ABCA platform status — stack health, running tasks, and recent task history.
Works with
Categories
Deploy, diff, or destroy the ABCA CDK stack. An agent skill from aws-samples/sample-autonomous-cloud-coding-agents. Deploy is an agent skill from aws-samples/sample-autonomous-cloud-coding-agents, published by the product's own GitHub organization. Deploy, diff, or destroy the ABCA CDK stack.
Deploy fits situations like: the user says deploy; deploy the stack; update the stack.
Run `npx skills add aws-samples/sample-autonomous-cloud-coding-agents --skill deploy -a claude-code`. Or copy the skill folder (docs/abca-plugin/skills/deploy in aws-samples/sample-autonomous-cloud-coding-agents) into .claude/skills/deploy in your project. Claude Code loads it when a task matches its description.
Run `npx skills add aws-samples/sample-autonomous-cloud-coding-agents --skill deploy -a codex`. Or copy the skill folder (docs/abca-plugin/skills/deploy in aws-samples/sample-autonomous-cloud-coding-agents) into .agents/skills/deploy in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add aws-samples/sample-autonomous-cloud-coding-agents --skill deploy -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/deploy, .gemini/skills/deploy, .github/skills/deploy and .opencode/skills/deploy in your project.
Going by SKILL.md and its folder, Deploy needs the command-line tools its instructions call (mise, aws, docker and curl). Our summary lists: Docker.
SKILL.md contains no URLs. Its commands use docker and curl, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Deploy is published under the MIT-0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.4k tokens (SKILL.md is roughly 5.7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Deploy: AWS Cdk Development (zxkane/aws-skills, 367 stars), Senior DevOps Toolkit (maslennikov-ig/claude-code-orchestrator-kit, 259 stars), Ecspresso (kayac/ecspresso, 1.1k stars) and Spa Create Config (splunk/splunk-platform-automator, 137 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
aws-samples (a GitHub organization, an official publisher) maintains it in aws-samples/sample-autonomous-cloud-coding-agents, which has 157 GitHub stars. The repository holds 6 skills in this directory. The repository was last updated on October 7, 2026.
Source: aws-samples/sample-autonomous-cloud-coding-agents on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.