Official agent skill

Rds Operation Review

by aws in aws/tools-for-devops-agent

Comprehensive Amazon RDS and Aurora operational review aligned with the AWS Well-Architected Framework and RDS/Aurora best practices.

OfficialApache-2.0Auto-check passedDevOps & Cloud

Install Rds Operation Review

skills CLI
$ npx skills add aws/tools-for-devops-agent --skill rds-operation-review -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install aws/tools-for-devops-agent rds-operation-review --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/aws/tools-for-devops-agent.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/rds-operation-review .claude/skills/rds-operation-review && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
rds-operation-review
GitHub stars
102
Token cost
~4.8k tokens
SKILL.md length
1,653 words
Files
7 (incl. references)
Skills in repo
31
Repo updated
First seen
Licence
Apache-2.0

At a glance

Comprehensive Amazon RDS and Aurora operational review aligned with the AWS Well-Architected Framework and RDS/Aurora best practices.

  • Works in 10 steps: Identify Target Resources → Discover RDS / Aurora Resources → Discover Configuration Dependencies → …
  • A user asks to review
  • SKILL.md covers When to Use, Step 1: Identify Target…, Step 2: Discover RDS / Aurora… and Step 3: Discover Configuration…, plus 7 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Rds Operation Review is an agent skill from aws/tools-for-devops-agent, published by the product's own GitHub organization. Comprehensive Amazon RDS and Aurora operational review aligned with the AWS Well-Architected Framework and RDS/Aurora best practices. Use this skill when a user asks to review, audit, or assess RDS instances or Aurora clusters for best practices compliance, security posture, reliability, performance, cost optimization, backups, encryption, or operational readiness. Triggers on requests like "RDS review", "Aurora best practices audit", "database operational assessment", "review my RDS instance", "RDS health…

Its SKILL.md is about 4.8k tokens, which your agent loads only when the skill is triggered. The skill folder holds 9 other files, including reference files (for example `README.md`, `evals/eval_queries.json` and `evals/evals.json`).

It sits in DevOps & Cloud, covering Backup and disaster recovery and Cloud architecture. It works with Amazon Web Services. The repository describes itself as: Open-source tools for AWS DevOps Agent - extend DevOps Agent with ready-to-use skills, custom agents, and other tools, for incident response, root cause analysis, and operational…. The licence is Apache-2.0.

When your agent uses it

  • A user asks to review
  • Assess RDS instances
  • Aurora clusters for best practices compliance
  • Security posture

Example prompts

  • “RDS review”
  • “Aurora best practices audit”
  • “database operational assessment”
  • “/rds-operation-review”

Workflow steps

10 steps, taken from the step headings in SKILL.md.

  1. Identify Target Resources
  2. Discover RDS / Aurora Resources
  3. Discover Configuration Dependencies
  4. Collect Backups, Snapshots, Maintenance
  5. Collect CloudWatch Metrics (7-Day Historical)
  6. Collect Logs (7-Day)
  7. Collect CloudTrail-Visible RDS Events
  8. Cost Data
  9. Analyze Against Best Practices
  10. Generate Report

What it can do on your machine

Read from SKILL.md and the folder at commit ddda70b. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • docs.aws.amazon.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Rds Operation Review loads about 4.8k tokens when it runs, and up to ~7.8k if it reads all its reference files. Until then it costs about 140 tokens; SKILL.md has 1,653 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~140
When it runs · the whole SKILL.md, loaded when a task matches
~4.8k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~7.8k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from aws/tools-for-devops-agent at commit ddda70b, republished under its Apache-2.0 licence (© aws). 1,653 words, ~4,788 tokens.

Download SKILL.mdSave it as .claude/skills/rds-operation-review/SKILL.md (or your agent's skills folder). This skill also uses 6 other files; get the full folder from GitHub.
name
rds-operation-review
description
Comprehensive Amazon RDS and Aurora operational review aligned with the AWS Well-Architected Framework and RDS/Aurora best practices. Use this skill when a user asks to review, audit, or assess RDS instances or Aurora clusters for best practices compliance, security posture, reliability, performance, cost optimization, backups, encryption, or operational readiness. Triggers on requests like "RDS review", "Aurora best practices audit", "database operational assessment", "review my RDS instance", "RDS health check", or "ORR for RDS".
metadata.author
yakiratz-aws
metadata.version
1.0.0
metadata.aws-devops-agent-skills.agent-t
Chat tasks, Evaluation
metadata.aws-devops-agent-skills.aws-ser
Amazon RDS
metadata.aws-devops-agent-skills.technic
Databases

RDS / Aurora Operational Review

Conduct a comprehensive operational review of Amazon RDS instances and Amazon Aurora clusters aligned with the AWS Well-Architected Framework and the Amazon RDS and Aurora best-practices guides.

This skill uses the AWS RDS, Aurora, CloudWatch, CloudWatch Logs, EC2, and Cost Explorer APIs only — no Kubernetes (k8s) or eks MCP tools. All data is collected through native AWS APIs available to the DevOps Agent's primary cloud source role.

When to Use

Activate this skill when the user asks to:

  • Review, audit, or assess RDS instances or Aurora clusters
  • Check RDS / Aurora best-practices compliance
  • Evaluate database security, cost, reliability, performance, or backups
  • Perform an RDS / Aurora operational readiness review (ORR)
  • Investigate database health or configuration drift

Step 1: Identify Target Resources

Ask the user which databases to review. Accept:

  • Specific instance / cluster identifiers and regions
  • "all instances" / "all clusters" in specific regions
  • "all RDS in all regions"

If no scope is given, default to all configured account regions.

Step 2: Discover RDS / Aurora Resources

Per region (skip empty regions):

rds.DescribeDBInstances           # RDS instances + Aurora cluster member instances
rds.DescribeDBClusters            # Aurora clusters (skip if user said "Provisioned only")
rds.DescribeDBClusterEndpoints    # Aurora reader/writer endpoints
rds.DescribeGlobalClusters        # Aurora Global Database (cross-region)
rds.DescribeDBProxies             # RDS Proxy

Capture per resource:

  • Engine, engineVersion, dbInstanceClass / serverlessV2 capacity
  • Multi-AZ, AvailabilityZones, subnetGroup, VpcId
  • AllocatedStorage, MaxAllocatedStorage, StorageType, Iops, StorageThroughput, StorageEncrypted, KmsKeyId
  • BackupRetentionPeriod, PreferredBackupWindow, PreferredMaintenanceWindow, AutoMinorVersionUpgrade
  • DeletionProtection, PubliclyAccessible, IAMDatabaseAuthenticationEnabled
  • PerformanceInsightsEnabled, PerformanceInsightsRetentionPeriod, MonitoringInterval (Enhanced Monitoring), MonitoringRoleArn
  • EnabledCloudwatchLogsExports, AssociatedRoles
  • ReadReplicaSourceDBInstanceIdentifier / ReadReplicaDBInstanceIdentifiers
  • Tags (rds.ListTagsForResource — param name is ResourceName and value is the resource ARN)

Step 3: Discover Configuration Dependencies

For each database, collect:

rds.DescribeDBParameterGroups           # custom vs default
rds.DescribeDBClusterParameterGroups    # Aurora
rds.DescribeOptionGroups                # RDS option groups
rds.DescribeDBSubnetGroups              # subnet AZ spread
ec2.DescribeSecurityGroups              # vpcSecurityGroupIds → ingress rules
kms.DescribeKey                         # for KmsKeyId (encryption at rest)

Step 4: Collect Backups, Snapshots, Maintenance

rds.DescribeDBSnapshots                            # manual + automated, per instance
rds.DescribeDBClusterSnapshots                     # Aurora
rds.DescribeDBInstanceAutomatedBackups
rds.DescribeDBClusterAutomatedBackups
rds.DescribeDBEngineVersions                       # current vs latest minor/major
rds.DescribePendingMaintenanceActions
rds.DescribeEvents                                 # last 14 days; duration in MINUTES (20160)
rds.DescribeEventSubscriptions

For each instance/cluster, also fetch:

  • rds.DescribeDBLogFiles — list of logs available locally on the DB
  • logs.DescribeLogGroups with prefix:
    • Instances: /aws/rds/instance/<dbInstanceIdentifier>/
    • Aurora: /aws/rds/cluster/<dbClusterIdentifier>/

Step 5: Collect CloudWatch Metrics (7-Day Historical)

One cloudwatch.GetMetricData call per resource. Period: 21600 (6 hours). StartTime: 7 days ago. EndTime: now.

5.1 RDS Instances (dimension DBInstanceIdentifier)
idmetricNamestatunit
cpuCPUUtilizationAverage%
freeMemFreeableMemoryMinimumbytes
freeSpaceFreeStorageSpaceMinimumbytes
readIopsReadIOPSAveragecount/s
writeIopsWriteIOPSAveragecount/s
readLatReadLatencyAverages
writeLatWriteLatencyAverages
dbConnDatabaseConnectionsMaximumcount
swapSwapUsageAveragebytes
netInNetworkReceiveThroughputAveragebytes/s
netOutNetworkTransmitThroughputAveragebytes/s
binLogBinLogDiskUsageAveragebytes
replLagReplicaLagMaximums
5.2 Aurora Clusters (dimension DBClusterIdentifier)
idmetricNamestatunit
cpuCPUUtilizationAverage%
freeMemFreeableMemoryMinimumbytes
dbConnDatabaseConnectionsMaximumcount
replLagAuroraReplicaLagMaximumms
bufCacheBufferCacheHitRatioAverage%
commitLatCommitLatencyAveragems
readLatReadLatencyAverages
writeLatWriteLatencyAverages
volReadIopsVolumeReadIOPsSumcount
volWriteIopsVolumeWriteIOPsSumcount
serverlessAcuServerlessDatabaseCapacityAverageACU
5.3 Per-Instance Aurora Members

Same instance metrics as 5.1, dimensioned by DBInstanceIdentifier of each cluster member.

Fetch cloudwatch.DescribeAlarmsForMetric for the key metrics (CPUUtilization, FreeStorageSpace, DatabaseConnections, ReadLatency, WriteLatency, ReplicaLag / AuroraReplicaLag) per resource so the report can flag missing alarms.

Step 6: Collect Logs (7-Day)

Per database log group, scan with logs.FilterLogEvents for:

PatternWhat it indicates
ERROR / FATALengine errors
Out of memory / OOMmemory pressure
connection limit exceeded / too many connectionsconnection saturation
deadlock / lock wait timeoutcontention
slow query / duration: (Postgres slow log)query performance
aborted connection (MySQL)client/network issues
replication has stopped / IO_THREAD errorsreplication health
checkpoint warnings / archiver failedI/O / WAL issues
failed to connect / authentication failedauth/network

Record occurrence counts per pattern over the 7-day window.

Step 7: Collect CloudTrail-Visible RDS Events

Use rds.DescribeEvents (last 14 days) per resource — covers the same operational signal as CloudTrail for RDS without an extra API permission. Look for: failover, restart, parameter group apply, out-of-memory, storage-full, low-storage, automated-backup-failed, maintenance-related events, read replica error, instance stopped.

Step 8: Cost Data

Once per review (not per resource):

costexplorer.GetCostAndUsage     # 3 months, by USAGE_TYPE,
                                 # filter Service = "Amazon Relational Database Service"
rds.DescribeReservedDBInstances  # RI inventory

Estimate per-database monthly cost as a proportional split of the latest month total (Cost Explorer doesn't break down per DB):

  1. Get the most recent full month total RDS spend.
  2. Per resource, weight by vCPUs(instance class) × (Multi-AZ ? 2 : 1) + allocatedStorageGB.
  3. For Aurora clusters, sum across cluster member instances; storage is cluster-shared.
  4. Note the estimate in the report with an "estimated" badge.

Step 9: Analyze Against Best Practices

Evaluate ALL collected data across the five Well-Architected pillars and assign a severity to every finding: CRITICAL, HIGH, MEDIUM, LOW, or INFO.

9.1 Security

Ref: Security in Amazon RDS

  • Network exposure: PubliclyAccessible=true → CRITICAL for production. Security groups with 0.0.0.0/0 ingress on the DB port → CRITICAL.
  • Encryption at rest: StorageEncrypted=false → HIGH (or CRITICAL for regulated workloads). Customer-managed KMS key preferred over AWS-managed.
  • Encryption in transit: parameter rds.force_ssl=1 (Postgres) / require_secure_transport=ON (MySQL/MariaDB) → MEDIUM if not set.
  • IAM auth: IAMDatabaseAuthenticationEnabled=false → MEDIUM. Master password in app code instead of Secrets Manager → HIGH.
  • Secrets Manager rotation: not enabled → MEDIUM.
  • Audit logging: engine audit logs not in EnabledCloudwatchLogsExports → MEDIUM (HIGH for PCI/HIPAA scope).
  • CMK rotation: KMS key without automatic rotation → LOW.
9.2 Reliability

Ref: High Availability for Amazon RDS

  • Multi-AZ: production single-AZ → HIGH (Aurora: ≥1 reader in a different AZ).
  • Subnet group AZ spread: subnets span <2 AZs → HIGH.
  • Backups: BackupRetentionPeriod=0 → CRITICAL. <7 days for production → HIGH.
  • Deletion protection: production with DeletionProtection=false → HIGH.
  • Auto minor version upgrade: AutoMinorVersionUpgrade=false for non-prod → MEDIUM.
  • Custom parameter group: instance using default.<engine> parameter group → MEDIUM (can't tune).
  • Pending maintenance: required actions not applied within window → MEDIUM, escalating with age.
  • Replication health (read replicas): ReplicaLag 7-day max > 30s → HIGH; > 300s → CRITICAL.
  • Aurora replicas: clusters with no reader → MEDIUM; single-AZ readers → MEDIUM.
  • DR: cross-region read replica or Aurora Global Database absent for tier-1 workloads → MEDIUM.
9.3 Performance

Ref: DB Instance Performance

7-day metric thresholds (full table in references/metrics-thresholds.md):

  • CPUUtilization avg > 70% → MEDIUM, > 90% → HIGH.
  • FreeStorageSpace < 20% allocated → HIGH, < 10% → CRITICAL.
  • FreeableMemory < 10% instance class memory → HIGH; sustained SwapUsage > 0 → MEDIUM.
  • DatabaseConnections max > 80% of max_connections parameter → HIGH.
  • ReadLatency / WriteLatency avg > 20ms (10ms for io1/io2) → MEDIUM.
  • BufferCacheHitRatio (Aurora) < 95% → MEDIUM, < 90% → HIGH.
  • BinLogDiskUsage growth without retention bounds → MEDIUM.
  • Performance Insights disabled → MEDIUM (free 7-day tier should always be on).
  • Enhanced Monitoring disabled or interval > 60s for production → MEDIUM.
  • Connection pooling: high connection churn / no RDS Proxy → MEDIUM for serverless / many-client workloads.
Show full SKILL.md (704 more words)Show less
9.4 Cost Optimization

Ref: Cost-Optimized Architectures

  • Stopped instances: DBInstanceStatus=stopped (still pays storage) → HIGH.
  • Previous-generation classes: db.m4 / db.r4 / db.t2 → MEDIUM.
  • gp2 → gp3: any StorageType=gp2 → MEDIUM (≈20% cheaper, equal/better performance).
  • Over-provisioned IOPS: io1/io2 with avg IOPS used / IOPS provisioned < 50% → MEDIUM.
  • Reserved Instance coverage: production On-Demand without RIs → MEDIUM, with estimated savings.
  • Storage autoscaling: MaxAllocatedStorage not set → LOW, increases stockout risk.
  • Idle databases: DatabaseConnections 7-day max < 5 + CPUUtilization 7-day avg < 5% → MEDIUM (candidate to stop / delete).
  • Manual snapshots: many > 90 days old → LOW (review retention).
  • Cost-allocation tags: missing Environment, Owner, CostCenter → LOW.
  • Graviton migration: x86 (db.r5, db.m5, db.t3) where Graviton is supported → MEDIUM (~20% saving).
9.5 Operational Excellence

Ref: Monitoring Amazon RDS

  • CloudWatch alarms: missing alarms on CPUUtilization, FreeStorageSpace, DatabaseConnections, FreeableMemory, ReplicaLag → MEDIUM each.
  • Event subscriptions: no rds.DescribeEventSubscriptions covering this resource → MEDIUM.
  • Engine version currency: minor version not latest available → LOW; major version EOL/within 6 months → HIGH.
  • Log exports: engine error / slow / audit logs not exported to CloudWatch → MEDIUM.
  • Maintenance window: not configured / overlaps business hours → LOW.
  • Tagging: missing operational tags (Environment, Owner, Runbook, OnCall) → LOW.
  • Drift: parameters changed in default parameter group (impossible by design — use as a flag for non-default usage check).

Step 10: Generate Report

Generate a separate shareable report artifact for each resource reviewed.

Artifact naming: rds-review-<resource-name>-<YYYY-MM-DD>.md Example: rds-review-prod-aurora-2026-04-29.md

For each resource, create the artifact as a Markdown document with:

Report Header
# RDS / Aurora Operational Review — <resource-name>
Account: <account-id> | Region: <region> | Date: <YYYY-MM-DD>
Engine: <engine> <engineVersion> | Class: <dbInstanceClass / serverlessV2 ACU> | Multi-AZ: <yes/no>
Executive Summary
  • Health: ✅ HEALTHY / ⚠️ WARNINGS / ❌ CRITICAL
  • Finding counts by severity
  • Top 3 critical/high items
Configuration Snapshot

| Item | Value | | Engine / version | … | | Storage | type, allocated, max, IOPS, throughput, encrypted (KMS) | | Network | VPC, subnet group, AZs, public access, security groups | | Backup | retention, window, automated, deletion protection | | HA / DR | Multi-AZ, replicas, Global DB | | Auth | IAM auth, Secrets Manager, master user | | Observability | Performance Insights, Enhanced Monitoring, log exports |

Findings by Pillar

For each of Security, Reliability, Performance, Cost, Operational Excellence:

| # | Finding | Severity | Current State | Recommendation |

CloudWatch Metrics (7-Day)

| Metric | Stat | 7-Day Avg | 7-Day Max / Min | Status | Finding |

Log Pattern Analysis (7-Day)

| Pattern | Occurrences | Severity | Finding |

RDS Events (14-Day)

Notable events (failovers, restarts, low-storage, OOM, maintenance) with timestamps.

Pending Maintenance

List from rds.DescribePendingMaintenanceActions with action type, target window, age.

Engine Version

Current vs latest minor / latest major. Flag EOL.

Cost Summary
  • Latest-month estimated cost for this resource (proportional split, with "estimated" badge)
  • RI coverage status
  • Top 3 cost-optimization opportunities (linked to findings)
Priority Matrix

| # | Finding | Severity | Pillar | Effort | Impact |

Next Steps
  • Immediate (CRITICAL/HIGH — 7 days)
  • Short-term (MEDIUM — 30 days)
  • Long-term (LOW — 90 days)

Severity Definitions

SeverityDefinitionSLA
CRITICALImmediate risk to availability, security, or data integrityFix within 24–48 hours
HIGHSignificant gap that could lead to incidentsFix within 1 week
MEDIUMNotable improvement opportunityPlan within 30 days
LOWMinor optimization or hardeningAddress when convenient
INFOObservation, no action requiredN/A

Engine-Specific Considerations

  • MySQL / MariaDB — innodb_buffer_pool_size, max_connections, slow query log, binlog retention, deprecated query_cache_type on 8.0+.
  • PostgreSQL — shared_buffers, work_mem, autovacuum, pg_stat_statements, log_min_duration_statement, replication slots.
  • Oracle — BYOL tracking, SGA/PGA sizing, AWR, tablespace autoextend.
  • SQL Server — tempdb file count (1 per vCPU up to 8), MAXDOP, cost threshold for parallelism, Always On AGs vs Multi-AZ.
  • Aurora — Serverless v2 ACU floor/ceiling, Global Database for DR, fast clones, Backtrack (MySQL only), cluster cache management.

Known API Quirks (recorded so the agent doesn't trip on them)

  • rds.ListTagsForResource — parameter is ResourceName, value is the resource ARN.
  • rds.DescribeEvents — Duration is in minutes (20160 = 14 days).
  • applicationautoscaling.DescribeScalableTargets — ServiceNamespace="rds" covers Aurora replica autoscaling.
  • logs.DescribeLogGroups prefix differs:
    • Instances: /aws/rds/instance/<id>/
    • Aurora clusters: /aws/rds/cluster/<id>/
  • Some Aurora metrics are cluster-only (AuroraReplicaLag, BufferCacheHitRatio, VolumeReadIOPs), others are instance-only (FreeableMemory, CPUUtilization per member). Query the right dimension or both.
  • rds.DescribeDBSnapshots requires pagination for accounts with many snapshots — use MaxRecords and Marker.

Data Source Boundaries

This skill explicitly does not call:

  • Kubernetes API / k8s MCP — RDS is fully managed; no cluster API exists.
  • eks MCP — outside scope.
  • Dante or any non-AWS scripts — keep the skill self-contained on the AWS DevOps Agent's primary cloud-source IAM role.

If a customer needs deeper SQL-level analysis (e.g. Performance Insights db.load breakdowns, top SQL by wait event), call pi.GetResourceMetrics and pi.DescribeDimensionKeys directly — both are in the same rds permission family when Performance Insights is enabled.

© aws, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 6 other files (references) in skills/rds-operation-review of aws/tools-for-devops-agent.

  • SKILL.md
  • README.md
  • evals/eval_queries.json
  • evals/evals.json
  • evals/files/database-context.json
  • references/best-practices-checklist.md
  • references/metrics-thresholds.md

Open the folder on GitHubat commit ddda70b

Compare with similar skills

Rds Operation Review next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Rds Operation Review compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Rds Operation Review this skillaws/tools-for-devops-agent102—~4.8kAutomated safety check: PassApache-2.0
Cloud ArchitectJeffallan/claude-skills12k—~1.9kAutomated safety check: PassMIT
Senior Cloud Architectborghei/Claude-Skills886—~1.4kAutomated safety check: PassMIT
Cloud Cost Optimizationwshobson/agents40k14 repos~1.7kAutomated safety check: PassMIT
Thesvgglincker/thesvg2.8k—~1.5kAutomated safety check: PassMIT
AWS Cloud Advisortech-leads-club/agent-skills7k—~2.1kAutomated safety check: PassCC-BY-4.0

Similar skills

  • Cloud Architect

    Jeffallan/claude-skills

    Designs cloud architectures, migration plans, cost optimization recommendations and disaster recovery strategies across AWS, Azure and GCP.

    12k GitHub stars~1.9k tokensUpdated 6 days ago
    DevOps & CloudAuto-check passed
  • Senior Cloud Architect

    borghei/Claude-Skills

    A skill your agent uses when the user asks to "design cloud architecture", "set up Terraform infrastructure", "optimize cloud costs", "plan disaster recovery", "configure multi-region failover"…

    886 GitHub stars~1.4k tokensUpdated 2 days ago
    DevOps & CloudAuto-check passed
  • Cuts cloud spend across AWS, Azure, GCP and OCI with cost tagging, rightsizing, commitment and spot pricing models, and architecture changes.

    40k GitHub starsUsed in 14 repos~1.7k tokens
    DevOps & CloudAuto-check passed
  • Thesvg

    glincker/thesvg

    Fetch brand SVG logos and cloud architecture icons (AWS, Azure, GCP) from theSVG.

    2.8k GitHub stars~1.5k tokensUpdated today
    DevOps & CloudAuto-check passed
  • AWS Cloud Advisor

    tech-leads-club/agent-skills

    Answers AWS architecture, security and service-selection questions by searching AWS documentation through MCP tools first, then adapting advice to your stack and team.

    7k GitHub stars~2.1k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Dangling DNS Finder

    anirudhbiyani/findmytakeover

    Detect dangling DNS records and subdomain-takeover risks across a multi-cloud environment by running the bundled findmytakeover tool.

    180 GitHub stars~1.8k tokensUpdated 1 mo ago
    DevOps & CloudAuto-check passed

More from aws/tools-for-devops-agent

All 31 skills in this repo
  • Aiml GPU Training Cluster Investigation

    aws/tools-for-devops-agent

    Official

    A skill your agent uses for GPU training or inference clusters on SageMaker HyperPod (Slurm or EKS), ParallelCluster, or self-managed EC2/EKS GPU instances.

    102 GitHub stars~5.4k tokensUpdated 2 days ago
    Auto-check passed
  • AWS Health Events

    aws/tools-for-devops-agent

    Official

    ALWAYS use this skill in the beginning of any incident investigation, root cause analysis, or operational troubleshooting.

    102 GitHub stars~4.6k tokensUpdated 2 days ago
    Auto-check passed
  • Database Migration Service Expertise

    aws/tools-for-devops-agent

    Official

    AWS Database Migration Service (DMS) operational review and troubleshooting skill.

    102 GitHub stars~3.4k tokensUpdated 2 days ago
    Auto-check passed
  • Ecs Operation Review

    aws/tools-for-devops-agent

    Official

    Performs a comprehensive Amazon ECS operations review across the 6 review pillars (Resiliency & HA, Observability, Security, Operations, Performance, Additional Analysis) using read-only AWS APIs…

    102 GitHub stars~4.8k tokensUpdated 2 days ago
    Auto-check passed
  • Sagemaker AI Ops Review

    aws/tools-for-devops-agent

    Official

    Amazon SageMaker AI Operational Review. An agent skill from aws/tools-for-devops-agent.

    102 GitHub stars~3.9k tokensUpdated 2 days ago
    Auto-check passed
  • Service Quota Check

    aws/tools-for-devops-agent

    Official

    Use this skill during any incident investigation, capacity planning, or operational troubleshooting when the issue may be caused by hitting AWS service limits.

    102 GitHub stars~3.4k tokensUpdated 2 days ago
    Auto-check passed

Categories

Questions about Rds Operation Review

What does Rds Operation Review do?

Comprehensive Amazon RDS and Aurora operational review aligned with the AWS Well-Architected Framework and RDS/Aurora best practices. Rds Operation Review is an agent skill from aws/tools-for-devops-agent, published by the product's own GitHub organization. Comprehensive Amazon RDS and Aurora operational review aligned with the AWS Well-Architected Framework and RDS/Aurora best practices.

When should I use Rds Operation Review?

Rds Operation Review fits situations like: A user asks to review; assess RDS instances; aurora clusters for best practices compliance; security posture.

How do I install Rds Operation Review in Claude Code?

Run `npx skills add aws/tools-for-devops-agent --skill rds-operation-review -a claude-code`. Or copy the skill folder (skills/rds-operation-review in aws/tools-for-devops-agent) into .claude/skills/rds-operation-review in your project. Claude Code loads it when a task matches its description.

How do I install Rds Operation Review in Codex?

Run `npx skills add aws/tools-for-devops-agent --skill rds-operation-review -a codex`. Or copy the skill folder (skills/rds-operation-review in aws/tools-for-devops-agent) into .agents/skills/rds-operation-review in your project. Codex loads it when a task matches its description.

Can I use Rds Operation Review in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add aws/tools-for-devops-agent --skill rds-operation-review -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/rds-operation-review, .gemini/skills/rds-operation-review, .github/skills/rds-operation-review and .opencode/skills/rds-operation-review in your project.

What does Rds Operation Review need to run?

SKILL.md names no scripts, command-line tools or credentials: Rds Operation Review is instructions for the agent only.

Does Rds Operation Review access the network?

SKILL.md names 1 domain. As links in the text: docs.aws.amazon.com. This is read from the text; nothing was executed.

Is Rds Operation Review safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Rds Operation Review use?

Rds Operation Review is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Rds Operation Review use?

About 4.8k tokens (SKILL.md is roughly 19k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 3k tokens, read only when the agent opens those files.

What are the alternatives to Rds Operation Review?

Skills that share tags, products or a category with Rds Operation Review: Cloud Architect (Jeffallan/claude-skills, 12k stars), Senior Cloud Architect (borghei/Claude-Skills, 886 stars), Cloud Cost Optimization (wshobson/agents, 40k stars) and Thesvg (glincker/thesvg, 2.8k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Rds Operation Review?

aws (a GitHub organization, an official publisher) maintains it in aws/tools-for-devops-agent, which has 102 GitHub stars. The repository holds 31 skills in this directory. The repository was last updated on October 8, 2026.

Source: aws/tools-for-devops-agent on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.