Fix Broken Datadog Provider Tests
DataDog/terraform-provider-datadog
Runs an end-to-end workflow to diagnose, reproduce, fix and validate a failing integration test in the Datadog Terraform provider, ending with a draft PR.
Diagnose and resolve dd-trace-java CI failures from a module's muzzle task or the runMuzzle aggregate.
$ npx skills add DataDog/dd-trace-java --skill resolve-muzzle-ci -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install DataDog/dd-trace-java resolve-muzzle-ci --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/DataDog/dd-trace-java.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/resolve-muzzle-ci .claude/skills/resolve-muzzle-ci && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "resolve-muzzle-ci" agent skill from https://github.com/DataDog/dd-trace-java/tree/master/.agents/skills/resolve-muzzle-ci into .claude/skills/resolve-muzzle-ci/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "resolve-muzzle-ci", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/DataDog/dd-trace-java/tree/master/.agents/skills/resolve-muzzle-ciType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add DataDog/dd-trace-java --skill resolve-muzzle-ci -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install DataDog/dd-trace-java resolve-muzzle-ci --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/DataDog/dd-trace-java.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.agents/skills/resolve-muzzle-ci .agents/skills/resolve-muzzle-ci && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "resolve-muzzle-ci" agent skill from https://github.com/DataDog/dd-trace-java/tree/master/.agents/skills/resolve-muzzle-ci into .agents/skills/resolve-muzzle-ci/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "resolve-muzzle-ci", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add DataDog/dd-trace-java --skill resolve-muzzle-ci -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install DataDog/dd-trace-java resolve-muzzle-ci --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/DataDog/dd-trace-java.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.agents/skills/resolve-muzzle-ci .cursor/skills/resolve-muzzle-ci && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "resolve-muzzle-ci" agent skill from https://github.com/DataDog/dd-trace-java/tree/master/.agents/skills/resolve-muzzle-ci into .cursor/skills/resolve-muzzle-ci/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "resolve-muzzle-ci", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/DataDog/dd-trace-java.git --path .agents/skills/resolve-muzzle-ci--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add DataDog/dd-trace-java --skill resolve-muzzle-ci -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install DataDog/dd-trace-java resolve-muzzle-ci --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/DataDog/dd-trace-java.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.agents/skills/resolve-muzzle-ci .gemini/skills/resolve-muzzle-ci && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "resolve-muzzle-ci" agent skill from https://github.com/DataDog/dd-trace-java/tree/master/.agents/skills/resolve-muzzle-ci into .gemini/skills/resolve-muzzle-ci/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "resolve-muzzle-ci", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install DataDog/dd-trace-java resolve-muzzle-ciInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add DataDog/dd-trace-java --skill resolve-muzzle-ci -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/DataDog/dd-trace-java.git skills-src && mkdir -p .github/skills && cp -r skills-src/.agents/skills/resolve-muzzle-ci .github/skills/resolve-muzzle-ci && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "resolve-muzzle-ci" agent skill from https://github.com/DataDog/dd-trace-java/tree/master/.agents/skills/resolve-muzzle-ci into .github/skills/resolve-muzzle-ci/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "resolve-muzzle-ci", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add DataDog/dd-trace-java --skill resolve-muzzle-ci -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install DataDog/dd-trace-java resolve-muzzle-ci --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/DataDog/dd-trace-java.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.agents/skills/resolve-muzzle-ci .opencode/skills/resolve-muzzle-ci && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "resolve-muzzle-ci" agent skill from https://github.com/DataDog/dd-trace-java/tree/master/.agents/skills/resolve-muzzle-ci into .opencode/skills/resolve-muzzle-ci/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "resolve-muzzle-ci", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
resolve-muzzle-ciDiagnose and resolve dd-trace-java CI failures from a module's muzzle task or the runMuzzle aggregate.
Resolve Muzzle CI is an agent skill from DataDog/dd-trace-java, published by the product's own GitHub organization. Diagnose and resolve dd-trace-java CI failures from a module's muzzle task or the runMuzzle aggregate. Use when CI names muzzle/runMuzzle, reports Muzzle validation or version-range resolution failures, or starts failing after a newly published library version. Distinguishes transient repository or MagicMirror failures from actionable compatibility, artifact, and validation-JDK defects; do not use for unrelated Gradle dependency or test failures.
Its SKILL.md is about 3.2k tokens, which your agent loads only when the skill is triggered. The skill folder holds 4 other files, including reference files (for example `references/ci-log-access.md`, `references/failure-signatures-and-remedies.md` and `references/jira-handoff.md`).
It sits in Testing & QA, covering Failing and flaky tests. It works with Java, Gradle and Datadog. The repository describes itself as: Datadog APM client for Java. The licence is Apache-2.0.
3 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit 89321ee. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md (its code samples are bash).
From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Resolve Muzzle CI loads about 3.2k tokens when it runs, and up to ~5.8k if it reads all its reference files. Until then it costs about 117 tokens; SKILL.md has 1,604 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from DataDog/dd-trace-java at commit 89321ee, republished under its Apache-2.0 licence (© DataDog). 1,604 words, ~3,166 tokens.
.claude/skills/resolve-muzzle-ci/SKILL.md (or your agent's skills folder). This skill also uses 3 other files; get the full folder from GitHub.Treat the failing task and its first causal exception as the routing evidence. A failed job that happens to download dependencies is not necessarily a muzzle failure.
Match the user's requested scope. For investigation-only requests, gather evidence and report the classification, root cause, and proposed remedy; stop before editing repository files, retrying CI, or creating Jira issues unless those actions are also authorized. Requests to fix or resolve the failure proceed through implementation and verification without another confirmation for already authorized work. Apply the separate CI-retry and Jira authorization rules below.
For GitLab job logs, read CI log access when CLI authentication or job retrieval is needed; the GitHub PR's repository is not necessarily the GitLab CI project.
Read the CI job log far enough to identify the full Gradle task path and first causal exception,
not only the final Muzzle validation failed wrapper.
Confirm that the task is a module :muzzle* task or the runMuzzle aggregate, or that the stack
is from datadog.gradle.plugin.muzzle / MuzzleVersionScanPlugin.
As soon as it is confirmed, tell the user briefly:
This is a muzzle CI failure in <task/module>. I am checking whether it is repository
infrastructure, an artifact/JDK issue, or a real compatibility regression.If it is not a muzzle failure, say which task actually failed and stop using this skill.
Before changing a build file, read:
docs/how_to_work_with_gradle.mddocs/how_instrumentations_work.md, especially its Muzzle and JApiCmp sections.agents/skills/apm-integrations/references/muzzle.mdbuild.gradle and adjacent versioned modulesPreserve the complete relevant log and CI URL. Record the affected task, module, directive, artifact coordinates, tested version, repository host, and first causal exception.
Use release age only to prioritize investigation. An established version that previously passed suggests checking infrastructure and dependency-graph changes; a newly published version suggests comparing its API and publication with the last passing release. Neither age alone nor a green aggregate rerun justifies a retry, version cap, or skip. See the worked scenarios.
Classify the failure as exactly one of:
UnsupportedClassVersionError occurs while loading a resolved root
or transitive library class that requires a newer JDK than the Muzzle worker.MUZZLE PASSED ... BUT FAILURE WAS EXPECTED shows that a fail
range or inverse expectation is false.FAILED HELPER INJECTION shows incomplete, misordered, invisible,
or incompatible helpers.For a transient platform failure, do not change repository, version, skip, or exclusion settings. The muzzle resolver already retries range resolution with backoff. If authorized, retry the failed job once after repository recovery, then report an infrastructure incident if the repository remains unhealthy. Stop here; do not create a Jira ticket from this workflow.
For the other classifications, reproduce the smallest task with diagnostic output:
./gradlew :dd-java-agent:instrumentation:<path>:muzzle --stacktrace --info --rerun-tasksLarge ranges are reduced before execution, so a green rerun is not proof that a deterministic
mid-range failure disappeared. Rerun the module muzzle task and confirm from its output or report
that the exact generated version task ran. If necessary, temporarily narrow a local diagnostic copy
of the directive to versions = "[<exact-version>]"; never commit that diagnostic narrowing.
Choose directly from the observed cause and prove the remedy against the current artifact and API evidence.
The major remedies are:
skipVersions around an ongoing incompatible line.skipVersions only for isolated bad releases whose own POM, artifact, or version metadata is
defective and where later releases can still be supported.excludeDependency 'group:module' only for a transitive dependency that is not referenced by
the advice, helpers, matcher requirements, explicit muzzle references, or class-loader matcher.
Prefer an exact coordinate; use a group wildcard only when the entire group is proven irrelevant.extraDependency only when it belongs to the library's valid runtime/application
classpath but is not present in the resolved graph.extraRepository to the Muzzle directive when version discovery also requires that repository.
extraRepository configures Aether version discovery; it does not configure Gradle dependency
resolution.javaVersion = "<N>" when a valid resolved dependency requires that JDK to
load. Split at a known JDK boundary when useful and verify both sides of each boundary.fail block or assertInverse only when
MUZZLE PASSED ... BUT FAILURE WAS EXPECTED demonstrates that the expectation is false. Replacing
generated inverses with equivalent explicit checks must preserve the expected outcomes and
version coverage.FAILED HELPER INJECTION; cap a
range only when the helper failure proves a real target-library compatibility boundary.Generated assertInverse directives do not inherit javaVersion, extraDependency, or
extraRepository. When inverse checks need these inputs, replace the generated inverse with explicit
fail directives covering the same unsupported ranges, with suitable JDKs, dependencies, and
repositories for those versions. Disable assertInverse only after providing equivalent coverage.
Ensure Gradle can also resolve the dependencies. Verify that each negative check fails for the
intended compatibility mismatch, not a missing classpath input or a repository/JDK failure. Sibling
coverage alone does not establish the original module's expected compatibility outcome.
Never broaden support, remove an inverse assertion, or exclude a dependency solely because it makes
the task pass. javaVersion changes only the worker JDK; it does not fix library linkage or change
the agent, test, or bytecode baselines. Muzzle does not prove that a type named only in a matcher
exists; use an explicit muzzle reference or runtime test when that fact matters.
For a symbol mismatch, run the module's printReferences task to trace the generated reference and
compare the last passing and first failing artifacts when useful:
./gradlew :dd-java-agent:instrumentation:<path>:printReferences
./gradlew japicmp -Partifact=<group>:<module> -Pbaseline=<last-pass> -Ptarget=<first-fail>Muzzle validates binary references and helper injection, not behavior. If code or supported runtime semantics change, add a behavior test and exercise a coherent library dependency stack.
When a fix changes Muzzle configuration or adds a build-file workaround, leave a brief comment beside the affected directive or setting explaining the concrete failure and compatibility consequence. Include a removal condition or upstream issue when the workaround is temporary.
For a source-only fix, keep any necessary explanation beside the relevant code or regression test;
no build.gradle edit is required. Record the affected version and changed linkage or runtime
assumption where useful. Avoid comments that only say fix muzzle, CI failure, or broken version.
Rerun the module muzzle task and verify according to the selected remedy:
Run the affected module's relevant tests when executable code, helper requirements, or claimed
support changed. For javaVersion, confirm the selected worker JDK and test both sides of any split.
Inspect the diff, then report the exact commands and results; do not call an infrastructure-only
retry a code validation.
Create a Jira follow-up only when muzzle exposes a compatibility gap in a newly published target library version and the completed change leaves that version unsupported, normally by capping the current module below it. The ticket tracks restoring support for that new version. Do not create a ticket for transient platform/repository failures, defective or missing publications, irrelevant transitive artifacts, tooling/JDK failures, stale inverse assertions, or a change that already restores and verifies support.
For a qualifying new-version gap, read the Jira handoff after the analysis and local verification are complete. If the current request authorizes Jira creation, create the ticket. If it does not, ask whether the user wants the gap logged and, if so, which Jira project/board to use; continue safe local work while waiting. Do not guess the destination or claim the ticket was created when no Jira integration is available.
Finish with the classification, root cause, resolution and its compatibility consequence, validation, any owner or removal condition, and—only for a qualifying new-version support gap—the Jira disposition (key/link, copy-ready draft, declined, or not requested). Preserve authorization conditions, name the exact task/module, distinguish proposed, completed, and blocked checks, and retain remedy-specific validation requirements.
© DataDog, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 3 other files (references) in .agents/skills/resolve-muzzle-ci of DataDog/dd-trace-java.
Open the folder on GitHubat commit 89321ee
Resolve Muzzle CI next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Resolve Muzzle CI this skillDataDog/dd-trace-java | 736 | — | ~3.2k | Automated safety check: Pass | Apache-2.0 | |
| Fix Broken Datadog Provider TestsDataDog/terraform-provider-datadog | 468 | — | ~2.4k | Automated safety check: Notes | MPL-2.0 | |
| Dd Unblock PRDataDog/pup | 1k | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | |
| Unblock PRdatadog-labs/agent-skills | 177 | — | ~2.7k | Automated safety check: Pass | MIT | |
| Rota Check Periodic Jobsoracle/graalpython | 1.7k | — | ~792 | Automated safety check: Pass | Custom licence | |
| Analyze Azdo BuildDataDog/dd-trace-dotnet | 573 | — | ~3.5k | Automated safety check: Pass | Apache-2.0 |
DataDog/terraform-provider-datadog
Runs an end-to-end workflow to diagnose, reproduce, fix and validate a failing integration test in the Datadog Terraform provider, ending with a draft PR.
DataDog/pup
Load when investigating a failing PR CI pipeline or checking PR health.
datadog-labs/agent-skills
Load when investigating a failing PR CI pipeline or checking PR health.
oracle/graalpython
Analyze current GraalPy periodic job failures for ROTA. An agent skill from oracle/graalpython.
DataDog/dd-trace-dotnet
Analyze Azure DevOps CI build failures in dd-trace-dotnet pipeline.
DataDog/jmxfetch
Add integration tests to TestGCMetrics.java for new GC collector support added to new-gc-default-jmx-metrics.yaml.
DataDog/dd-trace-java
Write a new library instrumentation end-to-end. An agent skill from DataDog/dd-trace-java.
DataDog/dd-trace-java
Performance-overhead review of a code diff / branch / PR for the dd-trace-java tracer.
DataDog/dd-trace-java
Diagnose and fix scope or continuation lifecycle failures in dd-trace-java instrumentation tests.
DataDog/dd-trace-java
Review a code diff / branch / PR for technical debt — code duplication, unnecessary complexity / over-engineering, and redundant or dead code.
DataDog/dd-trace-java
Clarify or review Java Javadocs, Javadoc tags, and explanatory code comments for legibility, accuracy, and source alignment.
DataDog/dd-trace-java
Converts Spock/Groovy test files in a Gradle module to equivalent JUnit 5 Java tests.
Categories
Diagnose and resolve dd-trace-java CI failures from a module's muzzle task or the runMuzzle aggregate. Resolve Muzzle CI is an agent skill from DataDog/dd-trace-java, published by the product's own GitHub organization. Diagnose and resolve dd-trace-java CI failures from a module's muzzle task or the runMuzzle aggregate.
Resolve Muzzle CI fits situations like: CI names muzzle/runMuzzle; reports Muzzle validation; version-range resolution failures; starts failing after a newly published library version.
Run `npx skills add DataDog/dd-trace-java --skill resolve-muzzle-ci -a claude-code`. Or copy the skill folder (.agents/skills/resolve-muzzle-ci in DataDog/dd-trace-java) into .claude/skills/resolve-muzzle-ci in your project. Claude Code loads it when a task matches its description.
Run `npx skills add DataDog/dd-trace-java --skill resolve-muzzle-ci -a codex`. Or copy the skill folder (.agents/skills/resolve-muzzle-ci in DataDog/dd-trace-java) into .agents/skills/resolve-muzzle-ci in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add DataDog/dd-trace-java --skill resolve-muzzle-ci -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/resolve-muzzle-ci, .gemini/skills/resolve-muzzle-ci, .github/skills/resolve-muzzle-ci and .opencode/skills/resolve-muzzle-ci in your project.
SKILL.md names no scripts, command-line tools or credentials: Resolve Muzzle CI is instructions for the agent only.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Resolve Muzzle CI is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 3.2k tokens (SKILL.md is roughly 13k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 2.6k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Resolve Muzzle CI: Fix Broken Datadog Provider Tests (DataDog/terraform-provider-datadog, 468 stars), Dd Unblock PR (DataDog/pup, 1k stars), Unblock PR (datadog-labs/agent-skills, 177 stars) and Rota Check Periodic Jobs (oracle/graalpython, 1.7k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
DataDog (a GitHub organization, an official publisher) maintains it in DataDog/dd-trace-java, which has 736 GitHub stars. The repository holds 9 skills in this directory. The repository was last updated on October 7, 2026.
Source: DataDog/dd-trace-java on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.