Official agent skill

Glue 09 10 Migration

by aws-samples in aws-samples/aws-glue-samples

Upgrade an AWS Glue ETL job from Glue version 0.9 or 1.0 to Glue 4.0.

OfficialMIT-0Auto-check passedData & Analytics

Install Glue 09 10 Migration

skills CLI
$ npx skills add aws-samples/aws-glue-samples --skill glue-09-10-migration -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install aws-samples/aws-glue-samples glue-09-10-migration --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/aws-samples/aws-glue-samples.git skills-src && mkdir -p .claude/skills && cp -r skills-src/utilities/skills/glue-v09-v1-migration .claude/skills/glue-09-10-migration && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
glue-09-10-migration
GitHub stars
1.5k
Token cost
~2.4k tokens
SKILL.md length
879 words
Files
3 (incl. references)
Skills in repo
2
Repo updated
First seen
Licence
MIT-0

At a glance

Upgrade an AWS Glue ETL job from Glue version 0.9 or 1.0 to Glue 4.0.

  • Works in 7 steps: Gather Job Information → Prepare Job for Glue 4.0 → Run the Job → …
  • : upgrade glue job
  • SKILL.md covers Reference Documentation, Workflow, Convergence Criteria and Tools Used
  • Needs HUDI_PRIMARY_KEY

What it does

Glue 09 10 Migration is an agent skill from aws-samples/aws-glue-samples, published by the product's own GitHub organization. Upgrade an AWS Glue ETL job from Glue version 0.9 or 1.0 to Glue 4.0. Runs the job against Glue 4.0, diagnoses failures against a known breaking-change catalogue, patches the job script and configuration, and iterates until the job succeeds or the fix attempt limit is exhausted. Jobs using the AWS Encryption SDK automatically run a two-step upgrade via Glue 2.0 first. Triggers on: upgrade glue job, migrate glue to 4.0, glue 0.9 to 4.0, glue 1.0 to 4.0, glue version upgrade, glue 4 migration, update glue version…

Its SKILL.md is about 2.4k tokens, which your agent loads only when the skill is triggered. The skill folder holds 3 other files, including reference files (for example `README.md` and `references/migration-notes.md`).

It sits in Data & Analytics, covering Data pipelines and ETL and Code migrations. It works with Amazon Web Services. The repository describes itself as: AWS Glue code samples. The licence is MIT-0.

When your agent uses it

  • : upgrade glue job
  • Migrate glue to 4.0
  • Glue 0.9 to 4.0
  • Glue 1.0 to 4.0

Example prompts

  • “/glue-09-10-migration”

Requirements

  • Python 3
  • A credential in HUDI_PRIMARY_KEY

Workflow steps

7 steps, taken from the step headings in SKILL.md.

  1. Gather Job Information
  2. Prepare Job for Glue 4.0
  3. Run the Job
  4. Analyze Failure
  5. Apply Fix
  6. Declare Success
  7. Revert and Report

What it can do on your machine

Read from SKILL.md and the folder at commit b67f703. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • HUDI_PRIMARY_KEY

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Glue 09 10 Migration loads about 2.4k tokens when it runs, and up to ~6.4k if it reads all its reference files. Until then it costs about 169 tokens; SKILL.md has 879 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~169
When it runs · the whole SKILL.md, loaded when a task matches
~2.4k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~6.4k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from aws-samples/aws-glue-samples at commit b67f703, republished under its MIT-0 licence (© aws-samples). 879 words, ~2,376 tokens.

Download SKILL.mdSave it as .claude/skills/glue-09-10-migration/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.
name
glue-09-10-migration
description
Upgrade an AWS Glue ETL job from Glue version 0.9 or 1.0 to Glue 4.0. Runs the job against Glue 4.0, diagnoses failures against a known breaking-change catalogue, patches the job script and configuration, and iterates until the job succeeds or the fix attempt limit is exhausted. Jobs using the AWS Encryption SDK automatically run a two-step upgrade via Glue 2.0 first. Triggers on: upgrade glue job, migrate glue to 4.0, glue 0.9 to 4.0, glue 1.0 to 4.0, glue version upgrade, glue 4 migration, update glue version. Do NOT use for: creating new Glue jobs, jobs already running on Glue 4.0, or migrating from Glue 2.0/3.0 (different breaking-change set).
argument-hint
[job-name] [aws-region] [aws-cli-profile-name]
owner_team
AWS Analytics
owner_cti
AWS/Analytics/Agent Skills
stages
preprod
version
1
metadata.service
glue
metadata.task
upgrade, migrate
metadata.persona
developer, data-engineer
metadata.workload
data-analytics

Upgrade an AWS Glue ETL job from Glue version 0.9 or 1.0 to Glue 4.0. Uses the run-fail-fix-rerun loop: update the job to Glue 4.0, run it, diagnose failures against a known breaking-change catalogue, patch the script or configuration, and repeat until the job succeeds or the fix attempt limit (5 iterations) is exhausted. If not able to upgrade, reverts the job and script to their original state.

Reference Documentation

  • references/migration-notes.md -- Failure categories, detection patterns, code-level fixes, dependency version reference, and migration path notes (fact-checked against official Glue and Spark migration guides)

Workflow

Prerequisites

Before starting, confirm:

  1. Job name — the exact Glue job name to upgrade.
  2. AWS credentials — glue:GetJob/GetJobRun/GetJobRuns/StartJobRun/UpdateJob/BatchStopJobRun, s3:GetObject/s3:PutObject on the script bucket, logs:DescribeLogStreams/GetLogEvents/FilterLogEvents on /aws-glue/jobs/*, iam:GetRole and iam:PassRole on the job execution role.
  3. Source Glue version — call glue:GetJob and verify GlueVersion is "0.9" or "1.0". Halt for any other version.
  4. S3 write permission — verify script bucket is writable by attempting a s3:PutObject of a 0-byte probe to script_location + ".write-check", then delete it. If the write fails, ask the user for the correct S3 location to use for storing the updated script.
  5. No active runs — call glue:GetJobRuns; confirm no RUNNING or STARTING state.

MUST NOT proceed if any prerequisite cannot be confirmed.

Constants
MAX_FIX_ATTEMPTS      = 5
MAX_TRANSIENT_RETRIES = 2
MAX_OOM_RETRIES       = 2
MAX_POLL_DURATION_SEC = 7200  # fallback if no successful run history available
POLL_TIMEOUT_FACTOR   = 1.5   # if history available: timeout = 1.5 × last successful run duration
POLL_INTERVAL_SEC     = 30
BACKUP_S3_SUFFIX      = ".glue40-upgrade-backup"
Step 1: Gather Job Information

Complexity routing: All jobs follow the same pipeline. ML transforms are a hard blocker (HALT in step 1.5). Jobs using the Encryption SDK take a two-step path (Step 1A then main loop). All other jobs proceed directly through the run-fail-fix loop.

1.1. Call glue:GetJob(JobName=<job_name>). Store as original_job_definition. Upload as JSON to <script_s3_directory>/.glue40-upgrade-backup.original_job_definition.json via s3:PutObject (where <script_s3_directory> is the S3 prefix up to the last / of script_location). 1.2. Extract: script_location, original_glue_version, original_default_args, original_worker_type, original_num_workers, original_max_capacity, execution_role, python_version. 1.2b. Call glue:GetJobRuns (max 5 runs). Find the most recent SUCCEEDED run and record its ExecutionTime (seconds) as last_success_duration. If no successful run exists, set last_success_duration = null. 1.3. Download job script from S3. Store as original_script_text. 1.4. Backup script — copy script to script_location + BACKUP_S3_SUFFIX using s3:GetObject (download) + s3:PutObject (upload to backup path). MUST NOT skip. 1.5. Hard blocker checks (evaluate in this order):

  • ML transforms — check if job script references MLTransform or create_dynamic_frame with transform_type set, OR if Job.Command.Name is gluestreaming with ML features. If detected → HALT immediately: "BLOCKED: ML transforms not supported in Glue 4.0." (takes precedence over all other checks)
  • Encryption SDK in args/script/SecurityConfiguration → do NOT halt. Run two-step upgrade: execute Step 1A below, then continue to Step 2.
  • Python 2 in config → record as preflight fix, do NOT halt.
Step 1A: Intermediate Upgrade to Glue 2.0 (Encryption SDK path only)

1A.1. Call glue:UpdateJob: set GlueVersion="2.0", Command.PythonVersion="3", WorkerType="G.1X", NumberOfWorkers = the greater of 2 or the integer (truncated) value of the job's current MaxCapacity. Add "--user-jars-first": "true" to DefaultArguments. MUST NOT pass MaxCapacity. 1A.2. Initialize: intermediate_fix_attempt=0, intermediate_fingerprints=set(). 1A.3. Call glue:StartJobRun. Poll to completion (same 30s interval and 1.5× history timeout rules as Step 3). 1A.4. SUCCEEDED → continue to Step 2 (now upgrade to 4.0). FAILED → classify failure and apply fix using the same catalogue in references/migration-notes.md. 1A.5. Increment intermediate_fix_attempt. If >= MAX_FIX_ATTEMPTS → HALT: "BLOCKED: Intermediate Glue 2.0 upgrade failed after 5 attempts. Revert and inspect manually." → go to Step 7. 1A.6. Cycle detection: if fingerprint already seen → HALT → Step 7. 1A.7. Repeat from 1A.3 until SUCCEEDED or budget exhausted.

Show full SKILL.md (330 more words)Show less
Step 2: Prepare Job for Glue 4.0

2.1. Build updated_args from current job DefaultArguments (use post-Step-1A args if the Encryption SDK path was taken, otherwise use original_default_args). Apply pre-flight fixes:

  • Remove maxCapacity → set WorkerType=G.1X, NumberOfWorkers = the greater of 2 or the integer (truncated) value of the job's current MaxCapacity
  • Python 2 → set Command.PythonVersion="3"
  • Glue 0.9 → add "--user-jars-first": "true"
  • Remove all --conf spark.yarn.* and --yarn-* keys

2.2. Call glue:UpdateJob with GlueVersion="4.0", updated worker type/count, DefaultArguments=updated_args, Command.PythonVersion="3". MUST NOT pass MaxCapacity.

2.3. Initialize: fix_attempt=0, transient_retries=0, oom_retries=0, applied_fixes=[], failure_fingerprints=set().

Step 3: Run the Job

3.1. Call glue:StartJobRun. Record job_run_id and run_start_time. 3.2. Poll glue:GetJobRun every 30s. Timeout threshold = 1.5 × last_success_duration if known, else 7200s (2h). If elapsed > threshold: glue:BatchStopJobRun → treat as TRANSIENT_INFRA. 3.3. SUCCEEDED → Step 6. TIMEOUT → Step 4 (TRANSIENT_INFRA). FAILED/ERROR → Step 4.

Step 4: Analyze Failure

4.1. Read error_message from GetJobRun. 4.2. Fetch last 500 log lines from /aws-glue/jobs/error/<job_name>/<job_run_id> via CloudWatch. 4.3. Extract primary exception from Traceback, Caused by:, java.lang., etc. 4.4. Compute failure_fingerprint = hash(exception_type + ":" + failing_symbol). 4.5. Cycle detection: if fingerprint already seen → HALT → Step 7. 4.6. Classify into failure category per references/migration-notes.md. Use FIRST match.

Step 5: Apply Fix

5.1. Apply fix per references/migration-notes.md:

  • Script fix: re-fetch from S3, patch, upload via s3:PutObject.
  • Config fix: update updated_args, call glue:UpdateJob.
  • Blocked: HDFS_PATH (unmappable), HUDI_PRIMARY_KEY (unknown key), UNKNOWN_FAILURE → Step 7. 5.2. Increment fix_attempt. If >= MAX_FIX_ATTEMPTS → Step 7. 5.3. Go to Step 3.
Step 6: Declare Success

Output:

UPGRADE RESULT: SUCCESS
Job: <job_name>  |  Original: <glue_version>  |  Target: 4.0
Fix Iterations: <n>
Script backup: <script_location>.glue40-upgrade-backup
Fixes Applied: [list]
Final Run ID: <id> | SUCCEEDED
Step 7: Revert and Report

7.1. Call glue:UpdateJob with original GlueVersion, DefaultArguments, WorkerType, NumberOfWorkers, MaxCapacity. 7.2. Restore script: s3:GetObject from backup path (script_location + BACKUP_S3_SUFFIX) → s3:PutObject to original script_location. 7.3. Output:

UPGRADE RESULT: FAILED — REVERTED
Job: <job_name>
Halt Reason: <BUDGET_EXHAUSTED|CYCLE_DETECTED|TRANSIENT_INFRA|OOM_UNRESOLVABLE|HARD_BLOCKER|UNKNOWN_FAILURE>
Last Failure: <category> | <exception>
Fixes Attempted: [list]
Manual Actions Required: [list]
Revert Status: job definition REVERTED | script REVERTED from backup

Convergence Criteria

ConditionAction
SUCCEEDEDDeclare success
fix_attempt >= 5Budget exhausted. Revert.
Cycle detectedSame failure after fix. Revert.
transient_retries > 2Persistent infra issue. Revert.
oom_retries > 2Cannot scale up. Revert.
Poll > timeoutJob hung (1.5× last run duration, or 2h if no history). Stop run.
BLOCKED categoryHard blocker. Revert.

Tools Used

glue:GetJob, glue:GetJobRuns, glue:UpdateJob, glue:StartJobRun, glue:GetJobRun, glue:BatchStopJobRun, s3:GetObject, s3:PutObject, logs:DescribeLogStreams, logs:GetLogEvents, logs:FilterLogEvents, iam:GetRole, iam:PassRole

© aws-samples, MIT-0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 2 other files (references) in utilities/skills/glue-v09-v1-migration of aws-samples/aws-glue-samples.

  • SKILL.md
  • README.md
  • references/migration-notes.md

Open the folder on GitHubat commit b67f703

Compare with similar skills

Glue 09 10 Migration next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Glue 09 10 Migration compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Glue 09 10 Migration this skillaws-samples/aws-glue-samples1.5k—~2.4kAutomated safety check: PassMIT-0
Ingesting Dataancoleman/ai-design-components526—~1.9kAutomated safety check: PassMIT
Managed Airflow Migrationsgoogle/skills21k—~3kAutomated safety check: PassApache-2.0
Airflow State Storeastronomer/agents451—~6.1kAutomated safety check: PassApache-2.0
Upgrading Mwaa Environmentsaws/agent-toolkit-for-aws2.8k—~7.3kAutomated safety check: PassApache-2.0
Authoring Mwaa Workflowaws/agent-toolkit-for-aws2.8k—~2.8kAutomated safety check: PassApache-2.0

Similar skills

  • Ingesting Data

    ancoleman/ai-design-components

    Data ingestion patterns for loading data from cloud storage, APIs, files, and streaming sources into databases.

    526 GitHub stars~1.9k tokensUpdated 10 mo ago
    Data & AnalyticsAuto-check passed
  • Official

    Provides guidance for migrating Apache Airflow DAGs in Managed Service for Apache Airflow (MSAA; formerly Cloud Composer).

    21k GitHub stars~3k tokensUpdated today
    Data & AnalyticsAuto-check passed
  • Airflow State Store

    astronomer/agents

    Persists task and asset state across retries and DAG runs using Airflow 3.3's AIP-103 key/value stores (taskstatestore, assetstatestore) and the crash-safe ResumableJobMixin.

    451 GitHub stars~6.1k tokensUpdated 2 days ago
    Data & AnalyticsAuto-check passed
  • Upgrading Mwaa Environments

    aws/agent-toolkit-for-aws

    Official

    Upgrades an MWAA environment to a newer Airflow version — within 2.x, within 3.x, or across the 2.x-to-3.x boundary.

    2.8k GitHub stars~7.3k tokensUpdated today
    Data & AnalyticsAuto-check passed
  • Authoring Mwaa Workflow

    aws/agent-toolkit-for-aws

    Official

    Authors and deploys MWAA workflow artifacts: Python Airflow DAGs for provisioned environments or YAML workflow files for Serverless.

    2.8k GitHub stars~2.8k tokensUpdated today
    Data & AnalyticsAuto-check passed
  • Glue Diagnostics

    Kilo-Org/kilo-marketplace

    A skill your agent uses to investigate and troubleshoot AWS Glue problems by analyzing ETL jobs, crawlers, connections, Data Catalog, DPU utilization, Spark execution, and job bookmarks following…

    190 GitHub stars~2k tokensUpdated 11 days ago
    Data & AnalyticsAuto-check passed

More from aws-samples/aws-glue-samples

  • Official

    Migrate a legacy AWS Glue development endpoint to a Glue interactive session, following the official AWS migration checklist.

    1.5k GitHub stars~3.6k tokensUpdated 1 mo ago
    Auto-check passed

Questions about Glue 09 10 Migration

What does Glue 09 10 Migration do?

Upgrade an AWS Glue ETL job from Glue version 0.9 or 1.0 to Glue 4.0. Glue 09 10 Migration is an agent skill from aws-samples/aws-glue-samples, published by the product's own GitHub organization.0.

When should I use Glue 09 10 Migration?

Glue 09 10 Migration fits situations like: : upgrade glue job; migrate glue to 4.0; glue 0.9 to 4.0; glue 1.0 to 4.0.

How do I install Glue 09 10 Migration in Claude Code?

Run `npx skills add aws-samples/aws-glue-samples --skill glue-09-10-migration -a claude-code`. Or copy the skill folder (utilities/skills/glue-v09-v1-migration in aws-samples/aws-glue-samples) into .claude/skills/glue-09-10-migration in your project. Claude Code loads it when a task matches its description.

How do I install Glue 09 10 Migration in Codex?

Run `npx skills add aws-samples/aws-glue-samples --skill glue-09-10-migration -a codex`. Or copy the skill folder (utilities/skills/glue-v09-v1-migration in aws-samples/aws-glue-samples) into .agents/skills/glue-09-10-migration in your project. Codex loads it when a task matches its description.

Can I use Glue 09 10 Migration in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add aws-samples/aws-glue-samples --skill glue-09-10-migration -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/glue-09-10-migration, .gemini/skills/glue-09-10-migration, .github/skills/glue-09-10-migration and .opencode/skills/glue-09-10-migration in your project.

What does Glue 09 10 Migration need to run?

Going by SKILL.md and its folder, Glue 09 10 Migration needs credentials named HUDI_PRIMARY_KEY. Our summary lists: Python 3; A credential in HUDI_PRIMARY_KEY.

Does Glue 09 10 Migration access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Glue 09 10 Migration safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Glue 09 10 Migration use?

Glue 09 10 Migration is published under the MIT-0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Glue 09 10 Migration use?

About 2.4k tokens (SKILL.md is roughly 9.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 4k tokens, read only when the agent opens those files.

What are the alternatives to Glue 09 10 Migration?

Skills that share tags, products or a category with Glue 09 10 Migration: Ingesting Data (ancoleman/ai-design-components, 526 stars), Managed Airflow Migrations (google/skills, 21k stars), Airflow State Store (astronomer/agents, 451 stars) and Upgrading Mwaa Environments (aws/agent-toolkit-for-aws, 2.8k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Glue 09 10 Migration?

aws-samples (a GitHub organization, an official publisher) maintains it in aws-samples/aws-glue-samples, which has 1,540 GitHub stars. The repository holds 2 skills in this directory. The repository was last updated on August 18, 2026.

Source: aws-samples/aws-glue-samples on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.