Gitops Cluster Debug
fluxcd/agent-skills
Debug and troubleshoot Flux CD on live Kubernetes clusters (not local repo files) via the Flux MCP server — inspects Flux resource status, reads controller logs, traces dependency chains, and…
Project-local pstack validation router for chmonitor. An agent skill from chmonitor/chmonitor.
$ npx skills add chmonitor/chmonitor --skill pstack -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install chmonitor/chmonitor pstack --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/chmonitor/chmonitor.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/pstack .claude/skills/pstack && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "pstack" agent skill from https://github.com/chmonitor/chmonitor/tree/main/.claude/skills/pstack into .claude/skills/pstack/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "pstack", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/chmonitor/chmonitor/tree/main/.claude/skills/pstackType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add chmonitor/chmonitor --skill pstack -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install chmonitor/chmonitor pstack --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/chmonitor/chmonitor.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.claude/skills/pstack .agents/skills/pstack && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "pstack" agent skill from https://github.com/chmonitor/chmonitor/tree/main/.claude/skills/pstack into .agents/skills/pstack/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "pstack", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add chmonitor/chmonitor --skill pstack -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install chmonitor/chmonitor pstack --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/chmonitor/chmonitor.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.claude/skills/pstack .cursor/skills/pstack && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "pstack" agent skill from https://github.com/chmonitor/chmonitor/tree/main/.claude/skills/pstack into .cursor/skills/pstack/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "pstack", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/chmonitor/chmonitor.git --path .claude/skills/pstack--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add chmonitor/chmonitor --skill pstack -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install chmonitor/chmonitor pstack --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/chmonitor/chmonitor.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.claude/skills/pstack .gemini/skills/pstack && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "pstack" agent skill from https://github.com/chmonitor/chmonitor/tree/main/.claude/skills/pstack into .gemini/skills/pstack/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "pstack", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install chmonitor/chmonitor pstackInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add chmonitor/chmonitor --skill pstack -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/chmonitor/chmonitor.git skills-src && mkdir -p .github/skills && cp -r skills-src/.claude/skills/pstack .github/skills/pstack && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "pstack" agent skill from https://github.com/chmonitor/chmonitor/tree/main/.claude/skills/pstack into .github/skills/pstack/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "pstack", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add chmonitor/chmonitor --skill pstack -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install chmonitor/chmonitor pstack --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/chmonitor/chmonitor.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.claude/skills/pstack .opencode/skills/pstack && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "pstack" agent skill from https://github.com/chmonitor/chmonitor/tree/main/.claude/skills/pstack into .opencode/skills/pstack/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "pstack", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
pstackProject-local pstack validation router for chmonitor. An agent skill from chmonitor/chmonitor.
Pstack is an agent skill from chmonitor/chmonitor. Project-local pstack validation router for chmonitor. Use when proving a dashboard, API, auth or security, PeerDB, alerts and webhooks, Helm and GitOps, deployment, or CLI change. Prefer CI checks and capture observable evidence instead of running heavy local builds.
Its SKILL.md is about 2.3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 19 other files (for example `README.md`, `features/README.md` and `features/api-auth-security.md`).
It sits in DevOps & Cloud, covering Container orchestration, Webhooks and GitOps. The repository describes itself as: Open-source operational advisor for ClickHouse — real-time monitoring plus AI-driven index/partition/materialized-view recommendations. The licence is GPL-3.0.
5 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit fc39ef0. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
ghgitbunFrom the folder's file list and the shell code blocks in SKILL.md.
Links to these hosts (documentation or services it may open):
github.comFrom URLs in SKILL.md, links to its own repository left out.
Names these keys or tokens, usually read from environment variables:
CHM_API_KEY_SECRETFrom names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Pstack loads about 2.3k tokens when it runs. Until then it costs about 69 tokens; SKILL.md has 1,184 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from chmonitor/chmonitor at commit fc39ef0, republished under its GPL-3.0 licence (© chmonitor). 1,184 words, ~2,318 tokens.
.claude/skills/pstack/SKILL.md (or your agent's skills folder). This skill also uses 17 other files; get the full folder from GitHub.This is a project-local adapter to the pstack method from
michael-denyer/pstack-claude.
The adapter adds chmonitor's CI-first validation contract and feature map; it
also has a pinned, supplemental copy of the upstream skills-only tree at
upstream/. The source, loading boundary, and provenance are
documented in README.md and upstream/SOURCE.md.
The maintained feature map starts at features/README.md,
and the inventory and CI matrix are in
docs/knowledge/pstack-validation.md.
Use this skill as the project rule for validation. The default proof is the CI run for the commit under review. Do not infer that a change works because a local file parses, a build used to pass, or a proxy reports a cached result.
pnpm, bun, cargo, helm, docker, or browser command by default.
Use the matching workflow and capture its job result instead.verified, verified-unreachable, or blocked as the result. Never
silently turn a skipped or non-required check into verified.Use the product-design and cloud-saas-mode skills as the expected-state
reference while reviewing CI evidence. In particular, a dashboard proof should
respect the existing semantic-token and shadcn boundary, the ?host=N route
contract, hooks at the deepest consumer, the shared loading/empty/error
states, and the stale-data behavior. Do not “fix” a UI proof by editing
components/ui/ or by creating a new visual primitive in this skill.
For cloud and auth claims, keep OSS and Cloud behavior distinct. Public demo visibility, hidden demo data for signed-in users, per-user connection isolation, and anonymous guest-agent exceptions are contracts to test, not alternate interpretations of a failed response.
For dashboard UI expectations, read the sibling
product-design skill. For cloud, auth, and
per-user connection boundaries, read
cloud-saas-mode. The older
verify-chmonitor skill
is still the detailed local CLI/TUI recipe. Use it only for a requested CLI
proof, not as a substitute for the CI matrix.
For a pull request, launch means identifying the CI run for the exact commit. Start with file inspection and the checks API:
git status --short --branch
git diff --name-only origin/main...HEAD
gh pr checks <PR> --watch=falseMap changed paths to the workflows in the feature file. A deployment change can be path-filtered, so also inspect the run's job list before deciding that a surface was not exercised.
For a post-deploy smoke proof, use the existing dashboard harness from its package directory. The unauthenticated form needs no secret:
cd apps/dashboard
bun scripts/verify-deploy.ts --skip-authThe Cloudflare workflow supplies CHM_API_KEY_SECRET only inside CI and calls
the same script for its authenticated deployment check. Do not copy that
variable into a local shell, a commit, or a transcript.
A CLI proof has a different launch model. The existing helper builds this checkout's Rust binary, so it is optional and heavier than the CI path:
.cursor/skills/verify-chmonitor/scripts/launch.shDo not run the helper merely to validate documentation. The Rust workflow owns the normal build and test proof.
Run a read-only identity and scope check before interpreting a result:
git status --short --branch
git diff --check
gh pr checks <PR> --watch=falseFor an approved live deployment, distinguish the three health contracts before making a claim:
GET /healthz is the static process liveness endpoint.GET /api/health is the minimal public deployment health response.GET /api/healthz is ClickHouse-gated readiness and may return 503 while
the monitored database is unavailable.Use the current workflow URL and the existing
verify-deploy.ts rather
than inventing a request or copying a secret-bearing curl. For the CLI, the
identity-only doctor helper is
.cursor/skills/verify-chmonitor/scripts/doctor.sh; it does not contact the
hosted dashboard by default. A failed connectivity row after an identity pass
is a separate observation, not proof of a wrong binary.
features/.pending, not verified. If its prerequisite
is absent, report verified-unreachable with the route or command attempted
and the unmet prerequisite.The feature files name the concrete workflow paths, route shapes, and test families. They do not ask an agent to run a local build as a substitute for a red or absent CI job.
For each feature, record the following in the handoff or an uncommitted run note:
verified, verified-unreachable, or blocked.A useful failure citation includes the assertion, route, and job output rather
than a generic “CI passed.” For a deployed smoke check, save the JSON report
from verify-deploy.ts in a protected scratch location and redact it before
sharing. A compile, lint, or passing unit test is evidence for that check only;
it is not evidence that a UI, external service, or webhook behaved correctly.
When a check fails, inspect the durable record first. The repository documents
gh run view <RUN_ID> --job <JOB_ID> --log-failed for failed-job logs. Quote
the relevant output, not a secret-bearing environment dump.
CI runs and deployed workers are shared infrastructure. Do not cancel a shared workflow, kill a process by name, or mutate a hosted connection to make a proof look better.
If the optional local CLI helper was used, tear down only the session and scratch state that it created:
.cursor/skills/verify-chmonitor/scripts/cleanup.shKeep proof artifacts. Remove temporary browser profiles, local config scratch,
and test doubles after they have been checked for secrets. Never remove the
operator's normal ~/.config/chm or a shared deployment as cleanup.
Use helpers only when their source is present in this checkout and their output can be redacted.
| Helper | Use | Boundary |
|---|---|---|
gh pr checks <PR> --watch=false | Read the current CI result | The normal project proof. |
gh run view <RUN_ID> --job <JOB_ID> --log-failed | Inspect a failed job | Do not paste secrets. |
apps/dashboard/scripts/verify-deploy.ts | Probe a live Worker | CI injects credentials; --skip-auth is the local safe form. |
.cursor/skills/verify-chmonitor/scripts/doctor.sh | Prove CLI binary identity | Optional local helper; not the merge gate. |
.cursor/skills/verify-chmonitor/scripts/drive.sh | Drive one mapped CLI feature | Requires the isolated CLI setup. |
.cursor/skills/verify-chmonitor/scripts/cleanup.sh | Remove helper-created state | Preserve evidence. |
.cursor/skills/verify-chmonitor/scripts/redact-check.sh | Check a CLI evidence directory | Run only on a redacted copy. |
.claude/skills/ui-ux-audit/ | Manual broad browser audit | Legacy target details; not the default CI path. |
Keep the local feature map and
docs/knowledge/pstack-validation.md
in sync when a route, workflow, or verification contract changes.
© chmonitor, GPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 17 other files in .claude/skills/pstack of chmonitor/chmonitor.
Open the folder on GitHubat commit fc39ef0
Pstack next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Pstack this skillchmonitor/chmonitor | 298 | — | ~2.3k | Automated safety check: Pass | GPL-3.0 | |
| Gitops Cluster Debugfluxcd/agent-skills | 230 | — | ~4.2k | Automated safety check: Pass | Apache-2.0 | |
| Kubernetes ArchitectCybereason-Public/owLSM | 280 | 8 repos | ~2.6k | Automated safety check: Pass | GPL-2.0 | |
| Kubernetes SpecialistJeffallan/claude-skills | 12k | 1 repos | ~2.1k | Automated safety check: Pass | MIT | |
| Devopsnicepkg/auto-company | 192 | 2 repos | ~814 | Automated safety check: Pass | MIT | |
| Gitops Repo Auditfluxcd/agent-skills | 230 | — | ~3.8k | Automated safety check: Pass | Apache-2.0 |
fluxcd/agent-skills
Debug and troubleshoot Flux CD on live Kubernetes clusters (not local repo files) via the Flux MCP server — inspects Flux resource status, reads controller logs, traces dependency chains, and…
Cybereason-Public/owLSM
Expert Kubernetes architect specializing in cloud-native infrastructure, advanced GitOps workflows (ArgoCD/Flux), and enterprise container orchestration.
Jeffallan/claude-skills
Creates and checks Kubernetes manifests, Helm charts, RBAC and network policies, and helps debug pod problems, with kubectl checks and rollback steps.
nicepkg/auto-company
Deploy to Cloudflare (Workers, R2, D1), Docker, GCP (Cloud Run, GKE), Kubernetes (kubectl, Helm).
fluxcd/agent-skills
Audit and validate Flux CD GitOps repositories by scanning local repo files (not live clusters) — runs Kubernetes schema validation, detects deprecated Flux APIs, reviews RBAC/multi-tenancy/secrets…
Diaoul/home-ops
Full cluster health check for the home-ops Kubernetes cluster.
chmonitor/chmonitor
Non-animation creative direction for HyperFrames videos. An agent skill from chmonitor/chmonitor.
chmonitor/chmonitor
Audio and media assets for HyperFrames compositions, produced by one shared audio engine (scripts/audio.mjs) — multi-provider TTS (HeyGen / ElevenLabs / Kokoro local), background music + sound…
chmonitor/chmonitor
Port an existing Remotion (React) composition to HyperFrames HTML.
chmonitor/chmonitor
A skill your agent uses when the user has a music track (an audio file, or a video to pull audio from) and wants a beat-synced HyperFrames video, calm to hard-hitting.
chmonitor/chmonitor
All animation knowledge for HyperFrames — atomic motion rules, multi-phase scene blueprints, scene transitions, broader motion-design techniques, AND the seven runtime adapters (GSAP default, plus…
chmonitor/chmonitor
turn arbitrary text — an article, notes, a topic, a brief — into a faceless explainer video, up to ~3 min (sweet spot 30-90s), where every visual is invented (typography, abstract graphics…
Categories
Project-local pstack validation router for chmonitor. An agent skill from chmonitor/chmonitor. Pstack is an agent skill from chmonitor/chmonitor. Project-local pstack validation router for chmonitor.
Pstack fits situations like: proving a dashboard; alerts and webhooks; helm and GitOps.
Run `npx skills add chmonitor/chmonitor --skill pstack -a claude-code`. Or copy the skill folder (.claude/skills/pstack in chmonitor/chmonitor) into .claude/skills/pstack in your project. Claude Code loads it when a task matches its description.
Run `npx skills add chmonitor/chmonitor --skill pstack -a codex`. Or copy the skill folder (.claude/skills/pstack in chmonitor/chmonitor) into .agents/skills/pstack in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add chmonitor/chmonitor --skill pstack -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/pstack, .gemini/skills/pstack, .github/skills/pstack and .opencode/skills/pstack in your project.
Going by SKILL.md and its folder, Pstack needs the command-line tools its instructions call (gh, git and bun) and credentials named CHM_API_KEY_SECRET. Our summary lists: Docker; A credential in CHM_API_KEY_SECRET.
SKILL.md names 1 domain. As links in the text: github.com. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Pstack is published under the GPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.3k tokens (SKILL.md is roughly 9.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Pstack: Gitops Cluster Debug (fluxcd/agent-skills, 230 stars), Kubernetes Architect (Cybereason-Public/owLSM, 280 stars), Kubernetes Specialist (Jeffallan/claude-skills, 12k stars) and Devops (nicepkg/auto-company, 192 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
chmonitor (a GitHub organization) maintains it in chmonitor/chmonitor, which has 298 GitHub stars. The repository holds 53 skills in this directory. The repository was last updated on October 5, 2026.
Source: chmonitor/chmonitor on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.