Official agent skill

AWS Lambda

by awslabs in awslabs/agent-plugins

Design, build, deploy, test, and debug serverless applications with AWS Lambda.

OfficialApache-2.0Auto-check passedBackend & APIs

Install AWS Lambda

skills CLI
$ npx skills add awslabs/agent-plugins --skill aws-lambda -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install awslabs/agent-plugins aws-lambda --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/awslabs/agent-plugins.git skills-src && mkdir -p .claude/skills && cp -r skills-src/plugins/aws-serverless/skills/aws-lambda .claude/skills/aws-lambda && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
aws-lambda
GitHub stars
915
Token cost
~3.1k tokens
SKILL.md length
1,131 words
Files
10 (incl. references)
Skills in repo
33
Repo updated
First seen
Licence
Apache-2.0

At a glance

Design, build, deploy, test, and debug serverless applications with AWS Lambda.

  • Works in 2 steps: Install SAM CLI: Follow the SAM CLI… → Verify: Run sam --version
  • Phrases like: Lambda function
  • SKILL.md covers When to Load Reference Files, Best Practices, Lambda Limits Quick Reference and Troubleshooting Quick Reference, plus 4 more sections
  • Calls aws, docker and jq

What it does

AWS Lambda is an agent skill from awslabs/agent-plugins, published by the product's own GitHub organization. Design, build, deploy, test, and debug serverless applications with AWS Lambda. Triggers on phrases like: Lambda function, event source, serverless application, API Gateway, EventBridge, Step Functions, serverless API, event-driven architecture, Lambda trigger. For deploying non-serverless apps to AWS, use deploy-on-aws plugin instead.

Its SKILL.md is about 3.1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 10 other files, including reference files (for example `references/event-driven-architecture.md`, `references/event-sources.md` and `references/getting-started.md`).

It sits in Backend & APIs, covering Serverless and Event-driven systems. It works with AWS Lambda, Amazon Web Services and Amazon DynamoDB. The repository describes itself as: Agent Plugins for AWS equip AI coding agents with the skills to help you architect, deploy, and operate on AWS. The licence is Apache-2.0.

When your agent uses it

  • Phrases like: Lambda function
  • Serverless application
  • Event-driven architecture

Example prompts

  • “/aws-lambda”

Requirements

  • Python 3
  • Docker

Workflow steps

2 steps, taken from the first numbered list in SKILL.md.

  1. Install SAM CLI: Follow the SAM CLI installation guide
  2. Verify: Run sam --version

What it can do on your machine

Read from SKILL.md and the folder at commit da51970. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • aws
    • docker
    • jq

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • docs.aws.amazon.com
    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

AWS Lambda loads about 3.1k tokens when it runs, and up to ~32k if it reads all its reference files. Until then it costs about 87 tokens; SKILL.md has 1,131 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~87
When it runs · the whole SKILL.md, loaded when a task matches
~3.1k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~32k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from awslabs/agent-plugins at commit da51970, republished under its Apache-2.0 licence (© awslabs). 1,131 words, ~3,100 tokens.

Download SKILL.mdSave it as .claude/skills/aws-lambda/SKILL.md (or your agent's skills folder). This skill also uses 9 other files; get the full folder from GitHub.
name
aws-lambda
description
Design, build, deploy, test, and debug serverless applications with AWS Lambda. Triggers on phrases like: Lambda function, event source, serverless application, API Gateway, EventBridge, Step Functions, serverless API, event-driven architecture, Lambda trigger. For deploying non-serverless apps to AWS, use deploy-on-aws plugin instead.
argument-hint
[what are you building?]

AWS Lambda Serverless Development

Design, build, deploy, and debug serverless applications with AWS serverless services. This skill provides access to serverless development guidance through the AWS Serverless MCP Server, helping you to build production-ready serverless applications with best practices built-in.

Use SAM CLI for project initialization and deployment, Lambda Web Adapter for web applications, or Event Source Mappings for event-driven architectures. AWS handles infrastructure provisioning, scaling, and monitoring automatically.

Key capabilities:

  • SAM CLI Integration: Initialize, build, deploy, and test serverless applications
  • Web Application Deployment: Deploy full-stack applications with Lambda Web Adapter
  • Event Source Mappings: Configure Lambda triggers for DynamoDB, Kinesis, SQS, Kafka
  • Lambda durable functions: Resilient multi-step applications with checkpointing — see the durable-functions skill for guidance
  • Lambda Managed Instances: Run Lambda on dedicated EC2 instances with managed lifecycle — see the managed-instances skill for evaluation, configuration, and migration guidance
  • Schema Management: Type-safe EventBridge integration with schema registry
  • Observability: CloudWatch logs, metrics, and X-Ray tracing
  • Performance Optimization: Right-sizing, cost optimization, and troubleshooting

When to Load Reference Files

Load the appropriate reference file based on what the user is working on:

  • Getting started, what to build, project type decision, or working with existing projects -> see references/getting-started.md
  • SAM, CDK, deployment, IaC templates, CDK constructs, or CI/CD pipelines -> see the aws-serverless-deployment skill (separate skill in this plugin)
  • Web app deployment, Lambda Web Adapter, API endpoints, CORS, authentication, custom domains, or sam local start-api -> see references/web-app-deployment.md
  • Event sources, DynamoDB Streams, Kinesis, SQS, Kafka, S3 notifications, or SNS -> see references/event-sources.md
  • EventBridge, event bus, event patterns, event design, Pipes, or schema registry -> see references/event-driven-architecture.md
  • Durable functions, checkpointing, replay model, saga pattern, or long-running Lambda workflows -> see the durable-functions skill (separate skill in this plugin with full SDK reference, testing, and deployment guides)
  • Lambda Managed Instances, LMI, capacity providers, multi-concurrency, EC2-backed Lambda, cold start elimination, or Lambda cost optimization with Reserved Instances -> see the managed-instances skill (separate skill in this plugin for evaluation, configuration, and migration)
  • Orchestration, workflows, or Durable Functions vs Step Functions -> see references/orchestration-and-workflows.md
  • Step Functions, ASL, state machines, JSONata, Distributed Map, SDK integrations, TestState API, mocking service integrations, or state machine unit tests -> see the aws-step-functions skill for comprehensive guidance
  • Observability, logging, tracing, metrics, alarms, or dashboards -> see references/observability.md
  • Optimization, cold starts, memory tuning, cost, or streaming -> see references/optimization.md
  • Powertools, idempotency, feature flags, parameters, parser, batch processing, or data masking -> see references/powertools.md
  • Troubleshooting, errors, debugging, or deployment failures -> see references/troubleshooting.md

Best Practices

Project Setup
  • Do: Use sam_init or cdk init with an appropriate template for your use case
  • Do: Set global defaults for timeout, memory, runtime, and tracing (Globals in SAM, construct props in CDK)
  • Do: Use AWS Lambda Powertools for structured logging, tracing, metrics (EMF), idempotency, and batch processing — available for Python, TypeScript, Java, and .NET
  • Don't: Copy-paste templates from the internet without understanding the resource configuration
  • Don't: Use the same memory and timeout values for all functions regardless of workload
Security
  • Do: Follow least-privilege IAM policies scoped to specific resources and actions
  • Do: Use secure_esm_* tools to generate correct IAM policies for event source mappings
  • Do: Store secrets in AWS Secrets Manager or SSM Parameter Store, never in environment variables
  • Do: Use VPC endpoints instead of NAT Gateways for AWS service access when possible
  • Do: Enable Amazon GuardDuty Lambda Protection to monitor function network activity for threats (cryptocurrency mining, data exfiltration, C2 callbacks)
  • Don't: Use wildcard (*) resource ARNs or actions in IAM policies
  • Don't: Hardcode credentials or secrets in application code or templates
  • Don't: Store user data or sensitive information in module-level variables — execution environments can be reused across different callers
Idempotency
  • Do: Write idempotent function code — Lambda delivers events at least once, so duplicate invocations must be safe
  • Do: Use the AWS Lambda Powertools Idempotency utility (backed by DynamoDB) for critical operations
  • Do: Validate and deduplicate events at the start of the handler before performing side effects
  • Don't: Assume an event will only ever be processed once

For topic-specific best practices, see the dedicated guide files in the reference table above.

Show full SKILL.md (473 more words)Show less

Lambda Limits Quick Reference

Limits that developers commonly hit:

ResourceLimit
Function timeout900 seconds (15 minutes)
Memory128 MB – 10,240 MB
1 vCPU equivalent1,769 MB memory
Synchronous payload (request + response)6 MB each
Async invocation payload1 MB
Streamed response200 MB
Deployment package (.zip, uncompressed)250 MB
Deployment package (.zip upload, compressed)50 MB
Container image10 GB
Layers per function5
Environment variables (aggregate)4 KB
/tmp ephemeral storage512 MB – 10,240 MB
Account concurrent executions (default)1,000 (requestable increase)
Burst scaling rate1,000 new executions per 10 seconds

Check Service Quotas for your account limits: aws lambda get-account-settings

Troubleshooting Quick Reference

ErrorCauseSolution
Build FailedMissing dependenciesRun sam_build with use_container: true
Stack is in ROLLBACK_COMPLETEPrevious deploy failedDelete stack with aws cloudformation delete-stack, redeploy
IteratorAge increasingStream consumer falling behindIncrease ParallelizationFactor and BatchSize. Use esm_optimize
EventBridge events silently droppedNo DLQ, retries exhaustedAdd RetryPolicy + DeadLetterConfig to rule target
Step Functions failing silentlyNo retry on Task stateAdd Retry with Lambda.ServiceException, Lambda.AWSLambdaException
Durable Function not resumingMissing IAM permissionsAdd lambda:CheckpointDurableExecution and lambda:GetDurableExecutionState — see durable-functions skill

For detailed troubleshooting, see references/troubleshooting.md.

Configuration

AWS CLI Setup

This skill requires that AWS credentials are configured on the host machine:

Verify access: Run aws sts get-caller-identity to confirm credentials are valid

SAM CLI Setup
  1. Install SAM CLI: Follow the SAM CLI installation guide
  2. Verify: Run sam --version
Container Runtime Setup
  1. Install a Docker compatible container runtime: Required for sam_local_invoke and container-based builds
  2. Verify: Use an appropriate command such as docker --version or finch --version
MCP Server Configuration

Write access is enabled by default. The plugin ships with --allow-write in .mcp.json, so the MCP server can create projects, generate IaC, and deploy on behalf of the user.

Access to sensitive data (like Lambda and API Gateway logs) is not enabled by default. To grant it, add --allow-sensitive-data-access to .mcp.json.

SAM Template Validation Hook

This plugin includes a PostToolUse hook that runs sam validate automatically after any edit to template.yaml or template.yml. If validation fails, the error is returned as a system message so you can fix it immediately. The hook requires SAM CLI and jq to be installed; if either is missing, validation is skipped with a system message. Users can disable it via /hooks.

Verify: Run jq --version

Language selection

Default: TypeScript

Override syntax:

  • "use Python" → Generate Python code
  • "use JavaScript" → Generate JavaScript code

When not specified, ALWAYS use TypeScript

IaC framework selection

Default: CDK

Override syntax:

  • "use CloudFormation" → Generate YAML templates
  • "use SAM" → Generate YAML templates

When not specified, ALWAYS use CDK

Serverless MCP Server Unavailable
  • Inform user: "AWS Serverless MCP not responding"
  • Ask: "Proceed without MCP support?"
  • DO NOT continue without user confirmation

Resources

© awslabs, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 9 other files (references) in plugins/aws-serverless/skills/aws-lambda of awslabs/agent-plugins.

  • SKILL.md
  • references/event-driven-architecture.md
  • references/event-sources.md
  • references/getting-started.md
  • references/observability.md
  • references/optimization.md
  • references/orchestration-and-workflows.md
  • references/powertools.md
  • references/troubleshooting.md
  • references/web-app-deployment.md

Open the folder on GitHubat commit da51970

Compare with similar skills

AWS Lambda next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

AWS Lambda compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
AWS Lambda this skillawslabs/agent-plugins915—~3.1kAutomated safety check: PassApache-2.0
AWS Serverless Edazxkane/aws-skills3674 repos~3.2kAutomated safety check: PassMIT
AWS Serverlessdavila7/claude-code-templates32k8 repos~2kAutomated safety check: PassMIT
AWS Serverlessaws/agent-toolkit-for-aws2.8k—~2.5kAutomated safety check: PassApache-2.0
Processing S3 Uploads With Step Functionsaws/agent-toolkit-for-aws2.8k—~4kAutomated safety check: PassApache-2.0
AWS Step Functionsaws/agent-toolkit-for-aws2.8k—~3.4kAutomated safety check: PassApache-2.0

Similar skills

  • AWS Serverless Eda

    zxkane/aws-skills

    AWS serverless and event-driven architecture expert based on Well-Architected Framework.

    367 GitHub starsUsed in 4 repos~3.2k tokens
    Backend & APIsAuto-check passed
  • AWS Serverless

    davila7/claude-code-templates

    Specialized skill for building production-ready serverless applications on AWS.

    32k GitHub starsUsed in 8 repos~2k tokens
    Backend & APIsAuto-check passed
  • AWS Serverless

    aws/agent-toolkit-for-aws

    Official

    Builds, deploys, manages, debugs, configures, and optimizes serverless applications on AWS using Lambda, API Gateway, Step Functions, EventBridge, and SAM/CDK.

    2.8k GitHub stars~2.5k tokensUpdated today
    Backend & APIsAuto-check passed
  • Official

    Deploy an event-driven workflow that routes S3 uploads to either Lambda or Fargate via Step Functions based on file size.

    2.8k GitHub stars~4k tokensUpdated today
    Backend & APIsAuto-check passed
  • AWS Step Functions

    aws/agent-toolkit-for-aws

    Official

    Authors and edits AWS Step Functions state machines: writes Amazon States Language (ASL) in JSONata, and chooses and structures state types (Task, Choice, Map, Parallel, Pass, Wait, Succeed, Fail).

    2.8k GitHub stars~3.4k tokensUpdated today
    Backend & APIsAuto-check passed
  • AWS Auth

    aws/agent-toolkit-for-aws

    Official

    Adds user authentication to web and mobile apps with Amazon Cognito (user pools and identity pools) and the AWS Amplify client auth libraries.

    2.8k GitHub stars~3.4k tokensUpdated today
    Backend & APIsAuto-check passed

More from awslabs/agent-plugins

All 33 skills in this repo
  • Dataset Evaluation

    awslabs/agent-plugins

    Official

    Validates dataset formatting and quality for SageMaker model fine-tuning (SFT, DPO, or RLVR).

    915 GitHub starsUsed in 2 repos~1.3k tokens
    Auto-check passed
  • Dataset Transformation

    awslabs/agent-plugins

    Official

    Generates code that transforms datasets between ML schemas for model training or evaluation.

    915 GitHub starsUsed in 2 repos~3.5k tokens
    Auto-check passed
  • Finetuning Technique

    awslabs/agent-plugins

    Official

    Selects a fine-tuning technique (SFT, DPO, RLVR, or RLAIF) for the user's use case and validates it against the selected model's available recipes.

    915 GitHub starsUsed in 1 repo~604 tokens
    Auto-check passed
  • Hyperpod Issue Report

    awslabs/agent-plugins

    Official

    Generate comprehensive issue reports from HyperPod clusters (EKS and Slurm) by collecting diagnostic logs and configurations for troubleshooting and AWS Support cases.

    915 GitHub starsUsed in 1 repo~890 tokens
    Auto-check passed
  • Hyperpod Performance Debugger

    awslabs/agent-plugins

    Official

    Diagnose performance issues on Amazon SageMaker HyperPod clusters — uneven NCCL bandwidth across nodes and poor filesystem throughput.

    915 GitHub starsUsed in 1 repo~4.1k tokens
    Auto-check passed
  • Hyperpod Ssm

    awslabs/agent-plugins

    Official

    Remote command execution and file transfer on SageMaker HyperPod cluster nodes via AWS Systems Manager (SSM).

    915 GitHub starsUsed in 1 repo~1.3k tokens
    Auto-check: notes

Categories

Questions about AWS Lambda

What does AWS Lambda do?

Design, build, deploy, test, and debug serverless applications with AWS Lambda. AWS Lambda is an agent skill from awslabs/agent-plugins, published by the product's own GitHub organization. Design, build, deploy, test, and debug serverless applications with AWS Lambda.

When should I use AWS Lambda?

AWS Lambda fits situations like: phrases like: Lambda function; serverless application; event-driven architecture.

How do I install AWS Lambda in Claude Code?

Run `npx skills add awslabs/agent-plugins --skill aws-lambda -a claude-code`. Or copy the skill folder (plugins/aws-serverless/skills/aws-lambda in awslabs/agent-plugins) into .claude/skills/aws-lambda in your project. Claude Code loads it when a task matches its description.

How do I install AWS Lambda in Codex?

Run `npx skills add awslabs/agent-plugins --skill aws-lambda -a codex`. Or copy the skill folder (plugins/aws-serverless/skills/aws-lambda in awslabs/agent-plugins) into .agents/skills/aws-lambda in your project. Codex loads it when a task matches its description.

Can I use AWS Lambda in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add awslabs/agent-plugins --skill aws-lambda -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/aws-lambda, .gemini/skills/aws-lambda, .github/skills/aws-lambda and .opencode/skills/aws-lambda in your project.

What does AWS Lambda need to run?

Going by SKILL.md and its folder, AWS Lambda needs the command-line tools its instructions call (aws, docker and jq). Our summary lists: Python 3; Docker.

Does AWS Lambda access the network?

SKILL.md names 2 domains. As links in the text: docs.aws.amazon.com and github.com. This is read from the text; nothing was executed.

Is AWS Lambda safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does AWS Lambda use?

AWS Lambda is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does AWS Lambda use?

About 3.1k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 29k tokens, read only when the agent opens those files.

What are the alternatives to AWS Lambda?

Skills that share tags, products or a category with AWS Lambda: AWS Serverless Eda (zxkane/aws-skills, 367 stars), AWS Serverless (davila7/claude-code-templates, 32k stars), AWS Serverless (aws/agent-toolkit-for-aws, 2.8k stars) and Processing S3 Uploads With Step Functions (aws/agent-toolkit-for-aws, 2.8k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains AWS Lambda?

awslabs (a GitHub organization, an official publisher) maintains it in awslabs/agent-plugins, which has 915 GitHub stars. The repository holds 33 skills in this directory. The repository was last updated on October 5, 2026.

Source: awslabs/agent-plugins on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.