Cloud Cost Optimization
wshobson/agents
Cuts cloud spend across AWS, Azure, GCP and OCI with cost tagging, rightsizing, commitment and spot pricing models, and architecture changes.
Comprehensive Amazon Data Firehose (formerly Kinesis Data Firehose) review aligned with the AWS Well-Architected Framework and Firehose best practices.
$ npx skills add aws/tools-for-devops-agent --skill firehose-operation-review -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install aws/tools-for-devops-agent firehose-operation-review --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/aws/tools-for-devops-agent.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/firehose-operation-review .claude/skills/firehose-operation-review && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "firehose-operation-review" agent skill from https://github.com/aws/tools-for-devops-agent/tree/main/skills/firehose-operation-review into .claude/skills/firehose-operation-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "firehose-operation-review", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/aws/tools-for-devops-agent/tree/main/skills/firehose-operation-reviewType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add aws/tools-for-devops-agent --skill firehose-operation-review -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install aws/tools-for-devops-agent firehose-operation-review --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aws/tools-for-devops-agent.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/firehose-operation-review .agents/skills/firehose-operation-review && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "firehose-operation-review" agent skill from https://github.com/aws/tools-for-devops-agent/tree/main/skills/firehose-operation-review into .agents/skills/firehose-operation-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "firehose-operation-review", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add aws/tools-for-devops-agent --skill firehose-operation-review -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install aws/tools-for-devops-agent firehose-operation-review --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aws/tools-for-devops-agent.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/firehose-operation-review .cursor/skills/firehose-operation-review && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "firehose-operation-review" agent skill from https://github.com/aws/tools-for-devops-agent/tree/main/skills/firehose-operation-review into .cursor/skills/firehose-operation-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "firehose-operation-review", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/aws/tools-for-devops-agent.git --path skills/firehose-operation-review--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add aws/tools-for-devops-agent --skill firehose-operation-review -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install aws/tools-for-devops-agent firehose-operation-review --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aws/tools-for-devops-agent.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/firehose-operation-review .gemini/skills/firehose-operation-review && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "firehose-operation-review" agent skill from https://github.com/aws/tools-for-devops-agent/tree/main/skills/firehose-operation-review into .gemini/skills/firehose-operation-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "firehose-operation-review", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install aws/tools-for-devops-agent firehose-operation-reviewInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add aws/tools-for-devops-agent --skill firehose-operation-review -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/aws/tools-for-devops-agent.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/firehose-operation-review .github/skills/firehose-operation-review && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "firehose-operation-review" agent skill from https://github.com/aws/tools-for-devops-agent/tree/main/skills/firehose-operation-review into .github/skills/firehose-operation-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "firehose-operation-review", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add aws/tools-for-devops-agent --skill firehose-operation-review -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install aws/tools-for-devops-agent firehose-operation-review --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aws/tools-for-devops-agent.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/firehose-operation-review .opencode/skills/firehose-operation-review && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "firehose-operation-review" agent skill from https://github.com/aws/tools-for-devops-agent/tree/main/skills/firehose-operation-review into .opencode/skills/firehose-operation-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "firehose-operation-review", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
firehose-operation-reviewComprehensive Amazon Data Firehose (formerly Kinesis Data Firehose) review aligned with the AWS Well-Architected Framework and Firehose best practices.
Firehose Operation Review is an agent skill from aws/tools-for-devops-agent, published by the product's own GitHub organization. Comprehensive Amazon Data Firehose (formerly Kinesis Data Firehose) review aligned with the AWS Well-Architected Framework and Firehose best practices. Use this skill when a user asks to review, audit, or assess Amazon Data Firehose delivery streams for best-practices compliance, security posture, reliability, delivery health, performance, cost optimization, service quotas, operational excellence, or sustainability. Triggers on requests like "Firehose review", "Kinesis Firehose best practices audit", "review my…
Its SKILL.md is about 6k tokens, which your agent loads only when the skill is triggered. The skill folder holds 379 other files, including reference files and assets (for example `.skilleval.yaml`, `CHANGELOG.md` and `README.md`).
It sits in DevOps & Cloud, covering Cloud architecture. It works with Amazon Web Services. The repository describes itself as: Open-source tools for AWS DevOps Agent - extend DevOps Agent with ready-to-use skills, custom agents, and other tools, for incident response, root cause analysis, and operational…. The licence is Apache-2.0.
6 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit ddda70b. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md.
From the folder's file list and the shell code blocks in SKILL.md.
Links to these hosts (documentation or services it may open):
docs.aws.amazon.comaws.amazon.comFrom URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Firehose Operation Review loads about 6k tokens when it runs, and up to ~14k if it reads all its reference files. Until then it costs about 177 tokens; SKILL.md has 2,949 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from aws/tools-for-devops-agent at commit ddda70b, republished under its Apache-2.0 licence (© aws). 2,949 words, ~6,040 tokens.
.claude/skills/firehose-operation-review/SKILL.md (or your agent's skills folder). This skill also uses 371 other files; get the full folder from GitHub.Conduct a comprehensive operational review of Amazon Data Firehose (formerly Amazon Kinesis Data Firehose) delivery streams aligned with the AWS Well-Architected Framework and Amazon Data Firehose best practices.
This skill uses the Firehose, CloudWatch, and Service Quotas APIs only — all data is collected through native AWS control-plane APIs and CloudWatch metrics. It performs no data-plane record puts and reads no delivered record content.
Activate this skill when the user asks to:
Work through these steps in order — each depends on the outputs of the ones before it. Track progress against this checklist and do not skip a step unless its scope makes it inapplicable (e.g. a single-stream review skips the account rollup).
Ask the user which accounts and regions to review, and whether to focus on a specific delivery stream. Accept:
security; reliability (aliases: resiliency, availability, durability);
performance (perf); service-quotas (quotas, limits); cost (cost-optimization,
cost optimization, finops); operational-excellence (ops, opex, operations);
sustainability (green, efficiency). If a requested term matches none of these, ask the
user to pick from the canonical list rather than guessing; if the run is unattended,
default to all pillars.If no scope is given, default to all configured account regions, all delivery streams, and all pillars. Default the analysis window to the last 7 days unless the user specifies a range (historical windows older than ~2 weeks may have reduced CloudWatch resolution).
Unattended / scheduled runs. If the skill is invoked without an interactive user turn — e.g. as a scheduled custom agent or an automated evaluation task — do not wait for scope input. Proceed immediately with the full default scope: all configured accounts and regions, all delivery streams, all seven pillars, and a 7-day window. Only pause to ask for scope when there is an interactive user to answer.
Account scoping. This skill operates within the accounts the DevOps Agent Space is configured to access — it does not assume roles or enumerate an Organization itself. "All accounts" means the accounts already associated with the Agent Space as cloud sources; the agent invokes the read APIs below in each in-scope account/region using the Space's configured access. If a requested account is not associated with the Space, report it as "not accessible from this Agent Space" rather than attempting to assume into it. Iterate account × region across the resolved scope.
Per account/region, list the delivery streams and describe each one:
firehose.ListDeliveryStreams # enumerate streams in the region
firehose.DescribeDeliveryStream # full config for each stream
firehose.ListTagsForDeliveryStream # tags (cost allocation, ownership)If ListDeliveryStreams returns no streams for a region, record "No Firehose
delivery streams in this region — skipping analysis" and move on. Do not generate
empty findings tables for regions with no streams.
From DescribeDeliveryStream, capture per stream:
DirectPut, KinesisStreamAsSource (with the source
Kinesis stream ARN), or MSK as source. This determines which ingestion metrics and
quotas apply.SizeInMBs and IntervalInSeconds for the destination.CompressionFormat (UNCOMPRESSED, GZIP, Snappy, Zip, HADOOP_SNAPPY).DeliveryStreamEncryptionConfiguration)
— AWS_OWNED_CMK vs CUSTOMER_MANAGED_CMK — and destination S3 EncryptionConfiguration
(KMS key).S3BackupMode (FailedDataOnly / AllData / Disabled),
the backup S3 bucket, and destination RetryOptions.DurationInSeconds.ProcessingConfiguration — whether a Lambda transform is
enabled and its ARN (do NOT read the Lambda's code or invoke it).DataFormatConversionConfiguration (Parquet/ORC) for S3
destinations.CloudWatchLoggingOptions.Enabled.VpcConfiguration for OpenSearch/Redshift destinations.CreateTimestamp, LastUpdateTimestamp, and
DeliveryStreamStatus.Guard on stream status. Only run the full metric-and-pillar analysis on streams in
ACTIVE status. For a stream in CREATING, CREATING_FAILED, or DELETING state,
record its status and skip the CloudWatch/pillar analysis — these streams have partial
or no metrics, and analyzing them produces misleading "0 IncomingRecords" findings. For
CREATING_FAILED, surface the failure itself as a HIGH reliability finding.
AWS/Firehose)Before querying metrics, and whenever classifying a metric value as Normal, Warning, or Critical in this step or Step 4, load the authoritative thresholds reference — references/metrics-thresholds.md — with:
read_skill_resource(skill_id="firehose-operation-review", path="references/metrics-thresholds.md")Use the thresholds from that file when classifying metric values as Normal, Warning, or Critical throughout this step and Step 4.
If this read_skill_resource call fails (e.g. resource not found), do not silently
proceed on the model's own judgment. State it explicitly at the top of the report —
"⚠️ thresholds reference (references/metrics-thresholds.md) could not be loaded; metric
classifications use general Firehose guidance and may be less precise" — and continue with
best-effort general guidance. Surfacing the gap keeps reviews consistent and auditable.
All Firehose metrics use the dimension DeliveryStreamName. Pull metric data with
cloudwatch.GetMetricData over the selected window (default 7 days). Firehose
publishes metrics at 1-minute granularity, and GetMetricData allows up to 500
metric-data queries per call — batch requests and paginate when a region has many streams.
Select which metrics to pull from the stream's source and destination (Step 2), then
use the thresholds reference as the authoritative catalog. metrics-thresholds.md
lists every metric — by group (ingestion, source-specific for Kinesis/MSK, per-destination
delivery, backup-to-S3, and feature metrics for transform / format conversion / dynamic
partitioning / SSE / CloudWatch-Logs decompression) — with its statistic and its
Normal/Warning/Critical bands. Pull only the groups that apply:
ThrottledRecords, the *PerSecondLimit
metrics).DeliveryTo<Dest>.* group for the stream's one active
destination (<Dest> ∈ S3, Redshift, AmazonOpenSearchService,
AmazonOpenSearchServerless, Splunk, HttpEndpoint, Snowflake), plus BackupToS3.*
when backup is enabled.Do not hand-copy metric names from memory; take them and their bands from the loaded reference so the classification is consistent across runs.
Alarm coverage. To evaluate the alarm-coverage checks (the Service Quotas and
Operational Excellence items in the best-practices checklist), call
cloudwatch.DescribeAlarms and match alarms whose
MetricName is ThrottledRecords or DeliveryTo<Dest>.DataFreshness with a
Dimensions entry of DeliveryStreamName = the stream under review. A stream with no
such alarm is a coverage gap.
DescribeAlarms permission handling (per-region, partial results). DescribeAlarms
is Region-scoped and permissions can differ across Regions in a multi-region scan, so
evaluate it per Region, independently — a denial in one Region must not suppress
alarm-coverage results in Regions where the call succeeds. On AccessDenied for a Region:
(1) do not fail the whole review; (2) mark only that Region's alarm coverage as
"not verified — cloudwatch:DescribeAlarms denied in <region>"; (3) still report alarm
coverage normally for Regions where the call succeeded; and (4) list the affected Regions
in the report so the reader knows which results are partial. Never infer a coverage gap
from a permission denial.
Before evaluating findings, load the best-practices checklist — references/best-practices-checklist.md — with:
read_skill_resource(skill_id="firehose-operation-review", path="references/best-practices-checklist.md")If this read_skill_resource call fails, state it explicitly at the top of the report
— "⚠️ best-practices checklist (references/best-practices-checklist.md) could not be
loaded; findings are based on the pillar guidance in this SKILL.md only" — and continue
using the per-pillar guidance in Step 4 below rather than silently skipping checks.
Use the checklist as the canonical list of items to evaluate for each pillar. Mark each item as ✅ Pass, ⚠️ Warning, ❌ Fail, or ➖ Not Applicable, and generate a finding for every Fail or Warning.
Evaluate all collected data across the pillars below and assign a severity to every finding: CRITICAL, HIGH, MEDIUM, LOW, or INFO. The pillars are: Security, Reliability, Performance, Service Quotas, Cost Optimization, Operational Excellence, Sustainability — the seven Well-Architected-aligned pillars for Firehose.
The overall review is a best-practices assessment: every finding maps to an item in
best-practices-checklist.md. "Best Practices" is therefore the framing for the whole
review, not a separate pillar — do not create a "Best Practices" pillar section.
Each checklist item carries a base severity (and any escalation conditions); the Severity Definitions table (near the end of this file) is the single source of truth for what each level means and its remediation SLA. If an SLA changes, update that table only.
For these six pillars, work the loaded references/best-practices-checklist.md item by
item — it is the canonical list of checks, and it carries each check's base severity,
escalation conditions, and the judgment rules that must be applied verbatim (e.g. the
customer-managed-KMS data-classification escalation, the "state the fact, don't judge it"
rule for Resource: "*" IAM grants, the Redshift-COPY vs Firehose root-causing, Iceberg
landing reconciliation, and the "report CloudWatch error logging once under Operational
Excellence" cross-reference). Classify every metric value against the bands in
references/metrics-thresholds.md. Do not re-derive checks or severities from memory —
apply the reference so two runs of the same stream agree.
Two procedural rules that span the pillars:
servicequotas.GetServiceQuota and the
*PerSecondLimit CloudWatch metrics — never hardcode the Region-dependent defaults —
then apply the Warning/Critical bands from the Service Quota Utilization table.references/metrics-thresholds.md.Ref: Amazon Data Firehose pricing
The Cost checklist items (compression, columnar conversion, buffering, dynamic-partitioning
efficiency, idle streams) live in references/best-practices-checklist.md. This section is
the procedure for the "Est. Impact" column those findings reference — it stays in the
body because it is analysis logic, not a lookup table.
Estimating the "Est. Impact" column (rough, directional). These are back-of-envelope figures for prioritization, not billing forecasts — always confirm against the current Firehose pricing page and the destination's own storage/scan pricing.
Where the unit rates come from (in priority order):
$/GB-month, S3 PUT
$/1,000 requests, and the relevant Athena/scan rate) for the stream's Region, applied
as constants and explicitly labeled "rough estimate at public on-demand list rates,
<region>, as of <date the skill was run>." This is the default path, not a last
resort — always produce a labeled figure rather than omitting cost.pricing.GetProducts (AWS Price List API) can supply these programmatically, but it is
not in the default AIDevOpsAgentAccessPolicy. If the permission is present, use it.
On AccessDenied (or if the permission is absent), degrade to option (2) — a
clearly-labeled list-price estimate — rather than silently omitting the cost figure.
Never drop a cost estimate solely because pricing.GetProducts was denied.Never emit a dollar figure without stating which rate source (1/2/3) was used.
GB/month ≈ (Sum of IncomingBytes over window / window days) × 30 / 1e9.downstream monthly saving ≈ stored_GB × storage_$/GB × (1 − compression_ratio), where storage_$/GB is the rate
from the source chosen above, plus query-scan savings proportional to the same ratio.
The ~0.3–0.5-of-original ratio for GZIP on JSON is a static default assumption, not
measured — where possible refine it from the stream's own observed data (e.g. compare
IncomingBytes against DeliveryToS3.Bytes, or a sample) and state whether the ratio
used is the default or observed. Always label the resulting figure an estimate.monthly PUT cost ≈ (DeliveryToS3.ObjectCount rate × 30 days) × S3_PUT_$ (S3 PUT rate from the chosen
source). Larger buffers cut object count roughly linearly.Generate a shareable Markdown report artifact for the review. Before writing the report, load the report template — assets/report-template.md — and follow its section order and tables exactly:
read_skill_resource(skill_id="firehose-operation-review", path="assets/report-template.md")The template covers the artifact naming convention, header, executive summary, the "Change Since Last Review" diff (Step 6), the account-level rollup, per-pillar findings tables, configuration and metrics summaries, quota utilization, the combined cost/sustainability opportunities table, the priority matrix, next steps, and the reference-links appendix. Populate every applicable section and omit the ones the template marks as scope-dependent (e.g. skip the account rollup for a single-stream review).
If this read_skill_resource call fails, note it at the top of the report —
"⚠️ report template (assets/report-template.md) could not be loaded; report structure
follows the skill's general guidance" — and still produce the standard sections
(header, executive summary, findings by pillar, configuration, metrics, quotas, cost,
priority matrix, next steps).
Re-run behavior: Before creating a new report artifact, check for an existing report for the same stream/account and region. If one exists, refresh it with the latest data instead of creating a duplicate.
When this skill runs on a schedule (or is re-run manually), a stateless snapshot loses the most useful operational signal: what changed since last time. If a prior report artifact exists for the same stream/account + region (from the re-run check above), diff this run's findings against it and lead the new report with a Change Since Last Review section:
Match findings across runs by a stable key (stream name + pillar + check identity), not by exact wording, so a re-phrased finding isn't miscounted as new+resolved. If no prior report exists, note "baseline review — no prior run to compare" and skip the diff. Keep the diff advisory: never suppress a current finding just because it also appeared last time.
| Severity | Definition | SLA |
|---|---|---|
| CRITICAL | Immediate risk to availability, security, or data integrity (e.g. delivery stalled, KMS key failures) | Fix within 24–48 hours |
| HIGH | Significant gap that could lead to data loss or incidents | Fix within 1 week |
| MEDIUM | Notable improvement opportunity | Plan within 30 days |
| LOW | Minor optimization or hardening | Address when convenient |
| INFO | Observation, no action required | N/A |
Some checks depend on Region:
servicequotas.GetServiceQuota and cite the returned value. Do not state a reference
number; the limit varies by Region and changes over time, and AppendOnly=True streams
auto-scale. See the Iceberg note in references/metrics-thresholds.md.*PerSecondLimit CloudWatch metrics rather than assuming a fixed value.DeliveryTo<Dest>.Success is a ratio (successful puts / total puts), not a count.
Small dips below 1.0 do not mean data loss — Firehose retries and, when backup is
configured, falls back to S3. Sustained low values with no backup are the concern.DataFreshness is emitted per destination; for warehouse destinations (Redshift) the
S3 staging freshness appears as DeliveryToS3.DataFreshness.ThrottledRecords counts records dropped at ingestion — throttled data is excluded
from IncomingRecords/IncomingBytes, so compute throttle rate as
ThrottledRecords / (IncomingRecords + ThrottledRecords).cloudwatch.GetMetricData caps at 500 metric-data queries per call — batch and
paginate for accounts with many streams.This skill collects data exclusively through native AWS APIs
(firehose, cloudwatch, servicequotas). It does not:
Runtime inputs vs. eval fixtures. At review time the skill reads only live AWS APIs
and its own references/ and assets/ files. evals/files/firehose-context.json is an evaluation
fixture used solely by the skill-evaluation harness — it is not a runtime input and
is not read during an actual review (interactive, scheduled, or automated). If it is
absent or unreadable, real reviews are unaffected; only eval runs that reference it would
skip those fixture-backed cases. There is therefore no unattended-run fallback needed for
this file.
© aws, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 371 other files (references, assets) in skills/firehose-operation-review of aws/tools-for-devops-agent.
Open the folder on GitHubat commit ddda70b
Firehose Operation Review next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Firehose Operation Review this skillaws/tools-for-devops-agent | 103 | — | ~6k | Automated safety check: Pass | Apache-2.0 | |
| Cloud Cost Optimizationwshobson/agents | 40k | 14 repos | ~1.7k | Automated safety check: Pass | MIT | |
| Thesvgglincker/thesvg | 2.8k | — | ~1.5k | Automated safety check: Pass | MIT | |
| AWS Cloud Advisortech-leads-club/agent-skills | 7k | — | ~2.1k | Automated safety check: Pass | CC-BY-4.0 | |
| Dangling DNS Finderanirudhbiyani/findmytakeover | 180 | — | ~1.8k | Automated safety check: Pass | GPL-3.0 | |
| AWS Architecture Diagramvidanov/aws-architecture-diagram-skill | 159 | — | ~4.9k | Automated safety check: Pass | MIT |
wshobson/agents
Cuts cloud spend across AWS, Azure, GCP and OCI with cost tagging, rightsizing, commitment and spot pricing models, and architecture changes.
glincker/thesvg
Fetch brand SVG logos and cloud architecture icons (AWS, Azure, GCP) from theSVG.
tech-leads-club/agent-skills
Answers AWS architecture, security and service-selection questions by searching AWS documentation through MCP tools first, then adapting advice to your stack and team.
anirudhbiyani/findmytakeover
Detect dangling DNS records and subdomain-takeover risks across a multi-cloud environment by running the bundled findmytakeover tool.
vidanov/aws-architecture-diagram-skill
Generate AWS architecture diagrams in draw.io format. An agent skill from vidanov/aws-architecture-diagram-skill.
wshobson/agents
Configure secure, high-performance connectivity between on-premises infrastructure and cloud platforms using VPN and dedicated connections.
aws/tools-for-devops-agent
A skill your agent uses for GPU training or inference clusters on SageMaker HyperPod (Slurm or EKS), ParallelCluster, or self-managed EC2/EKS GPU instances.
aws/tools-for-devops-agent
ALWAYS use this skill in the beginning of any incident investigation, root cause analysis, or operational troubleshooting.
aws/tools-for-devops-agent
AWS Database Migration Service (DMS) operational review and troubleshooting skill.
aws/tools-for-devops-agent
Performs a comprehensive Amazon ECS operations review across the 6 review pillars (Resiliency & HA, Observability, Security, Operations, Performance, Additional Analysis) using read-only AWS APIs…
aws/tools-for-devops-agent
Comprehensive Amazon RDS and Aurora operational review aligned with the AWS Well-Architected Framework and RDS/Aurora best practices.
aws/tools-for-devops-agent
Amazon SageMaker AI Operational Review. An agent skill from aws/tools-for-devops-agent.
Works with
Categories
Comprehensive Amazon Data Firehose (formerly Kinesis Data Firehose) review aligned with the AWS Well-Architected Framework and Firehose best practices. Firehose Operation Review is an agent skill from aws/tools-for-devops-agent, published by the product's own GitHub organization. Comprehensive Amazon Data Firehose (formerly Kinesis Data Firehose) review aligned with the AWS Well-Architected Framework and Firehose best practices.
Firehose Operation Review fits situations like: A user asks to review; assess Amazon Data Firehose delivery streams for best-practices compliance; security posture; delivery health.
Run `npx skills add aws/tools-for-devops-agent --skill firehose-operation-review -a claude-code`. Or copy the skill folder (skills/firehose-operation-review in aws/tools-for-devops-agent) into .claude/skills/firehose-operation-review in your project. Claude Code loads it when a task matches its description.
Run `npx skills add aws/tools-for-devops-agent --skill firehose-operation-review -a codex`. Or copy the skill folder (skills/firehose-operation-review in aws/tools-for-devops-agent) into .agents/skills/firehose-operation-review in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add aws/tools-for-devops-agent --skill firehose-operation-review -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/firehose-operation-review, .gemini/skills/firehose-operation-review, .github/skills/firehose-operation-review and .opencode/skills/firehose-operation-review in your project.
SKILL.md names no scripts, command-line tools or credentials: Firehose Operation Review is instructions for the agent only.
SKILL.md names 2 domains. As links in the text: docs.aws.amazon.com and aws.amazon.com. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Firehose Operation Review is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 6k tokens (SKILL.md is roughly 24k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 7.9k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Firehose Operation Review: Cloud Cost Optimization (wshobson/agents, 40k stars), Thesvg (glincker/thesvg, 2.8k stars), AWS Cloud Advisor (tech-leads-club/agent-skills, 7k stars) and Dangling DNS Finder (anirudhbiyani/findmytakeover, 180 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
aws (a GitHub organization, an official publisher) maintains it in aws/tools-for-devops-agent, which has 103 GitHub stars. The repository holds 31 skills in this directory. The repository was last updated on October 9, 2026.
Source: aws/tools-for-devops-agent on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.