Analyze GitHub Action Logs
withastro/astro
Analyze recent GitHub Actions workflow runs to identify patterns, mistakes, and improvements.
Validate Atmos projects, components, arbitrary JSON Schema inputs, EditorConfig, and GitHub Actions; use affected-file selection and native CI annotations
$ npx skills add cloudposse/atmos --skill atmos-validation -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install cloudposse/atmos atmos-validation --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/cloudposse/atmos.git skills-src && mkdir -p .claude/skills && cp -r skills-src/agent-skills/skills/atmos-validation .claude/skills/atmos-validation && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "atmos-validation" agent skill from https://github.com/cloudposse/atmos/tree/main/agent-skills/skills/atmos-validation into .claude/skills/atmos-validation/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "atmos-validation", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/cloudposse/atmos/tree/main/agent-skills/skills/atmos-validationType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add cloudposse/atmos --skill atmos-validation -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install cloudposse/atmos atmos-validation --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/cloudposse/atmos.git skills-src && mkdir -p .agents/skills && cp -r skills-src/agent-skills/skills/atmos-validation .agents/skills/atmos-validation && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "atmos-validation" agent skill from https://github.com/cloudposse/atmos/tree/main/agent-skills/skills/atmos-validation into .agents/skills/atmos-validation/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "atmos-validation", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add cloudposse/atmos --skill atmos-validation -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install cloudposse/atmos atmos-validation --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/cloudposse/atmos.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/agent-skills/skills/atmos-validation .cursor/skills/atmos-validation && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "atmos-validation" agent skill from https://github.com/cloudposse/atmos/tree/main/agent-skills/skills/atmos-validation into .cursor/skills/atmos-validation/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "atmos-validation", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/cloudposse/atmos.git --path agent-skills/skills/atmos-validation--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add cloudposse/atmos --skill atmos-validation -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install cloudposse/atmos atmos-validation --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/cloudposse/atmos.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/agent-skills/skills/atmos-validation .gemini/skills/atmos-validation && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "atmos-validation" agent skill from https://github.com/cloudposse/atmos/tree/main/agent-skills/skills/atmos-validation into .gemini/skills/atmos-validation/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "atmos-validation", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install cloudposse/atmos atmos-validationInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add cloudposse/atmos --skill atmos-validation -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/cloudposse/atmos.git skills-src && mkdir -p .github/skills && cp -r skills-src/agent-skills/skills/atmos-validation .github/skills/atmos-validation && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "atmos-validation" agent skill from https://github.com/cloudposse/atmos/tree/main/agent-skills/skills/atmos-validation into .github/skills/atmos-validation/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "atmos-validation", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add cloudposse/atmos --skill atmos-validation -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install cloudposse/atmos atmos-validation --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/cloudposse/atmos.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/agent-skills/skills/atmos-validation .opencode/skills/atmos-validation && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "atmos-validation" agent skill from https://github.com/cloudposse/atmos/tree/main/agent-skills/skills/atmos-validation into .opencode/skills/atmos-validation/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "atmos-validation", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
atmos-validationValidate Atmos projects, components, arbitrary JSON Schema inputs, EditorConfig, and GitHub Actions; use affected-file selection and native CI annotations
Atmos Validation is an agent skill from cloudposse/atmos. Validate Atmos projects, components, arbitrary JSON Schema inputs, EditorConfig, and GitHub Actions; use affected-file selection and native CI annotations
Its SKILL.md is about 2.2k tokens, which your agent loads only when the skill is triggered. The skill folder holds 4 other files, including reference files (for example `references/json-schema.md`, `references/opa-policies.md` and `references/project-validation.md`).
It sits in DevOps & Cloud, covering CI/CD. It works with GitHub Actions. The repository describes itself as: Atmos is the open-source runtime for infrastructure — it builds, authenticates, and ships Terraform, OpenTofu, Packer, Ansible, Kubernetes, Helm, and containers the same way on… The licence is Apache-2.0.
Read from SKILL.md and the folder at commit bbe58a6. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md (its code samples are yaml, bash, json and rego).
From the folder's file list and the shell code blocks in SKILL.md.
Hosts in commands or code, which the agent is likely to contact:
json.schemastore.orgjson-schema.orgFrom URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Atmos Validation loads about 2.2k tokens when it runs, and up to ~7.8k if it reads all its reference files. Until then it costs about 43 tokens; SKILL.md has 762 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from cloudposse/atmos at commit bbe58a6, republished under its Apache-2.0 licence (© cloudposse). 762 words, ~2,214 tokens.
.claude/skills/atmos-validation/SKILL.md (or your agent's skills folder). This skill also uses 3 other files; get the full folder from GitHub.Use this skill for every Atmos validation command and validation policy configuration: aggregate project validation, configuration and stack schemas, JSON Schema, OPA/Rego, EditorConfig, GitHub Actions workflows, affected-file selection, and native CI reporting.
For detailed JSON Schema examples, read references/json-schema.md. For OPA/Rego policy patterns, read references/opa-policies.md. For project-wide, affected, and CI validation behavior, read references/project-validation.md.
| Need | Command |
|---|---|
| Run every project validator | atmos validate |
| Validate only changed project inputs | atmos validate --affected |
Validate atmos.yaml | atmos validate config or atmos config validate |
| Validate stack manifests | atmos validate stacks or atmos stack validate |
Validate .editorconfig rules | atmos validate editorconfig |
| Lint GitHub Actions workflows with actionlint | atmos ci validate or atmos validate ci |
| Validate arbitrary files against JSON Schema | atmos validate schema <key> |
| Validate resolved component input | atmos validate component <component> -s <stack> |
Start with the narrowest command that matches the change. Use the aggregate command for a repository gate because it reports every applicable validator instead of stopping at the first one.
atmos validate component vpc -s plat-ue2-prod
atmos validate stacks
atmos validate schema github-actions
atmos validate --affected --format richatmos validate component validates a component in a stack using settings.validation or explicit
--schema-path / --schema-type flags.
atmos validate stacks validates stack YAML syntax, imports, duplicate component definitions, and
manifest schema compliance.
atmos validate schema <key> validates arbitrary files matched by a schemas.<key>.matches glob
against a JSON Schema.
atmos validate aggregates configuration, stack, EditorConfig, and GitHub Actions validation when
those project inputs exist. It is the preferred CI entry point for repository-wide validation.
Use --affected to select repository inputs changed from the merge base. In GitHub pull requests,
Atmos reads the PR base; locally, pass --base <ref> when the default base is not appropriate.
atmos validate --affected --base origin/main --format rich
atmos config validate --affected
atmos stack validate --affected
atmos validate ci --affectedUse repeatable repository-relative glob exclusions to keep deliberately-invalid test fixtures out
of production validation. --exclude works with the aggregate command and the config, stacks,
schema, and GitHub Actions validators whether they run all inputs or only affected inputs.
atmos validate --affected --exclude 'tests/fixtures/**' --format rich
atmos validate schema github-actions --exclude 'tests/fixtures/**'
atmos validate ci --exclude 'tests/fixtures/**'Use slash-separated repository globs. Do not use an exclusion to hide a deployable project path; run intentional negative fixtures in a dedicated test or annotation E2E check instead.
atmos validate editorconfig --exclude is its established EditorConfig regular-expression flag,
not the generic repository-glob exclusion. The aggregate command still applies its repository-glob
--exclude before invoking the EditorConfig validator.
Configure validation schema base paths in atmos.yaml:
schemas:
jsonschema:
base_path: stacks/schemas/jsonschema
opa:
base_path: stacks/schemas/opa
atmos:
manifest: stacks/schemas/atmos/atmos-manifest/1.0/atmos-manifest.jsonThe cue, opa, and jsonschema keys under schemas are reserved for Atmos schema-path
configuration. Do not use those names as generic atmos validate schema <key> entries.
Define component validation under settings.validation:
components:
terraform:
vpc:
settings:
validation:
validate-vpc-jsonschema:
schema_type: jsonschema
schema_path: vpc/validate-vpc-component.json
check-vpc-opa:
schema_type: opa
schema_path: vpc/validate-vpc-component.rego
module_paths:
- catalog/constants
timeout: 10Each validation step can define:
| Property | Use |
|---|---|
schema_type | jsonschema or opa |
schema_path | Path relative to the matching schema base path |
module_paths | OPA module paths |
description | Human-readable description |
disabled | Skip the step when true |
timeout | Timeout in seconds |
Use atmos validate schema for non-Atmos files, such as GitHub Actions workflows or Kubernetes
manifests:
schemas:
github-actions:
schema: https://json.schemastore.org/github-workflow.json
matches:
- .github/workflows/*.yml
- .github/workflows/*.yamlatmos validate schema github-actionsJSON Schema validates structure, required fields, types, patterns, enums, and ranges. Atmos passes
the full resolved component configuration to component schemas, so schemas usually validate under
vars, settings, env, backend, or metadata.
Minimal component schema:
{
"$schema": "https://json-schema.org/draft/2020-12/schema",
"type": "object",
"properties": {
"vars": {
"type": "object",
"required": ["region"],
"properties": {
"region": { "type": "string" }
}
}
}
}Atmos OPA policies use package atmos and collect validation errors in errors.
package atmos
errors[message] {
input.vars.stage == "prod"
input.vars.map_public_ip_on_launch == true
message = "Public IP mapping is not allowed in prod"
}OPA input is the resolved component configuration. Common fields include input.vars,
input.settings, input.env, input.backend, input.metadata, and Terraform CLI context fields
available during plan/apply.
Run validation early in CI with the Atmos container and direct Atmos commands:
jobs:
validate:
runs-on: ubuntu-latest
container:
image: ghcr.io/cloudposse/atmos:${{ vars.ATMOS_VERSION }}
steps:
- uses: actions/checkout@v6
- run: atmos validate --affected --format rich --exclude 'tests/fixtures/**'Enable native CI output in atmos.yaml when validation runs in CI:
ci:
enabled: true
annotations:
enabled: trueWith native CI enabled, aggregate validation writes an Atmos job summary, including passed,
skipped, and failed validators. Findings from validators that support source annotations (including
GitHub Actions/actionlint) emit GitHub Actions workflow commands; a successful validation stays
visible through the green check and job summary rather than creating success annotations. Use
--format rich for readable CI diagnostics. The actionlint SARIF format is intentionally
side-effect free, so use it when a separate SARIF uploader owns annotations.
Do not reintroduce deprecated setup actions in new examples. Route broader Native CI workflow
structure, event triggers, permissions, and actionlint annotation E2E tests to atmos-ci.
| Need | Skill |
|---|---|
| Detailed JSON Schema patterns | references/json-schema.md |
| Detailed OPA/Rego policy patterns | references/opa-policies.md |
| Aggregate, affected, exclusions, and native CI behavior | references/project-validation.md |
| Atmos manifest JSON Schema and IDE completion | atmos-schemas |
| Stack manifest structure and imports | atmos-stacks |
| Component configuration and inheritance | atmos-components |
| Native CI validation workflows | atmos-ci |
vars validation over ad hoc shell checks.atmos list or
atmos describe first.© cloudposse, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 3 other files (references) in agent-skills/skills/atmos-validation of cloudposse/atmos.
Open the folder on GitHubat commit bbe58a6
Atmos Validation next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Atmos Validation this skillcloudposse/atmos | 1.4k | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | |
| Analyze GitHub Action Logswithastro/astro | 63k | 1 repos | ~1.3k | Automated safety check: Pass | Custom licence | |
| GitHub Actions Templatesbartstc/vite-ts-react-template | 122 | 13 repos | ~1.9k | Automated safety check: Pass | MIT | |
| Nushellccusage/ccusage | 19k | — | ~938 | Automated safety check: Pass | Custom licence | |
| Repo Hygiene Scan and FixQwenLM/qwen-code | 28k | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | |
| Senior DevOps Toolkitmaslennikov-ig/claude-code-orchestrator-kit | 259 | 6 repos | ~1.1k | Automated safety check: Notes | Custom licence |
withastro/astro
Analyze recent GitHub Actions workflow runs to identify patterns, mistakes, and improvements.
bartstc/vite-ts-react-template
Create production-ready GitHub Actions workflows for automated testing, building, and deploying applications.
ccusage/ccusage
Guides ccusage Nushell scripts. An agent skill from ccusage/ccusage.
QwenLM/qwen-code
Scheduled CI skill that scans a repository for small, certain docs, test and code hygiene issues and fixes them on one branch with a commit per finding.
maslennikov-ig/claude-code-orchestrator-kit
Comprehensive DevOps skill for CI/CD, infrastructure automation, containerization, and cloud platforms (AWS, GCP, Azure). Includes pipeline setup…
Chachamaru127/claude-code-harness
Diagnoses failing CI pipelines and tests, deciding first whether the test or the implementation is at fault, and hands hard cases to a dedicated fixer subagent.
cloudposse/atmos
A skill your agent uses when implementing, finishing, documenting, or reviewing a fix, repair, remediation, bug fix, debug-and-fix task, workflow fix, infrastructure fix, or any change that should…
cloudposse/atmos
Atmos Terraform linting with TFLint: standalone atmos terraform lint, component-aware config discovery and toolchain versions, TFLint rule configuration, and lifecycle hooks/CI findings.
cloudposse/atmos
Blog post authoring for Atmos: MDX template, frontmatter, website/blog/tags.yml and authors.yml rules, problem-first framing, backtick-opening ban, optional cast embeds, and no-Go-internals leakage.
cloudposse/atmos
Decide whether a PR's new or changed default needs edition-journal handling (pkg/edition, docs/prd/editions.md), and do the mechanical work if so: journal entries, the four-layer default check…
cloudposse/atmos
Migrate to Atmos from native Terraform, Terraform Workspaces, Terramate, Terragrunt, Make, Just, or Task; migrate tool versions from mise or Aqua CLI; migrate AWS/GCP/Azure CLI configs, Leapp…
cloudposse/atmos
Start an hourly background loop that keeps the current branch's PR rebased, its addressed CodeRabbit threads resolved, its CI checks passing, its lint clean, its tests passing with adequate patch…
Works with
Categories
Validate Atmos projects, components, arbitrary JSON Schema inputs, EditorConfig, and GitHub Actions; use affected-file selection and native CI annotations. Atmos Validation is an agent skill from cloudposse/atmos.
Atmos Validation fits situations like: tasks that involve CI/CD.
Run `npx skills add cloudposse/atmos --skill atmos-validation -a claude-code`. Or copy the skill folder (agent-skills/skills/atmos-validation in cloudposse/atmos) into .claude/skills/atmos-validation in your project. Claude Code loads it when a task matches its description.
Run `npx skills add cloudposse/atmos --skill atmos-validation -a codex`. Or copy the skill folder (agent-skills/skills/atmos-validation in cloudposse/atmos) into .agents/skills/atmos-validation in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add cloudposse/atmos --skill atmos-validation -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/atmos-validation, .gemini/skills/atmos-validation, .github/skills/atmos-validation and .opencode/skills/atmos-validation in your project.
SKILL.md names no scripts, command-line tools or credentials: Atmos Validation is instructions for the agent only.
SKILL.md names 2 domains. In commands or code: json.schemastore.org and json-schema.org; the agent is likely to contact these when it follows the instructions. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Atmos Validation is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.2k tokens (SKILL.md is roughly 8.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 5.6k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Atmos Validation: Analyze GitHub Action Logs (withastro/astro, 63k stars), GitHub Actions Templates (bartstc/vite-ts-react-template, 122 stars), Nushell (ccusage/ccusage, 19k stars) and Repo Hygiene Scan and Fix (QwenLM/qwen-code, 28k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
cloudposse (a GitHub organization) maintains it in cloudposse/atmos, which has 1,395 GitHub stars. The repository holds 70 skills in this directory. The repository was last updated on October 7, 2026.
Source: cloudposse/atmos on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.