Terraform Specialist
davila7/claude-code-templates
Expert Terraform/OpenTofu specialist mastering advanced IaC automation, state management, and enterprise infrastructure patterns.
Create or review Terraform infrastructure and plans. An agent skill from first-fluke/oh-my-agent.
$ npx skills add first-fluke/oh-my-agent --skill oma-tf-infra -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install first-fluke/oh-my-agent oma-tf-infra --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/first-fluke/oh-my-agent.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/oma-tf-infra .claude/skills/oma-tf-infra && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "oma-tf-infra" agent skill from https://github.com/first-fluke/oh-my-agent/tree/main/skills/oma-tf-infra into .claude/skills/oma-tf-infra/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oma-tf-infra", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/first-fluke/oh-my-agent/tree/main/skills/oma-tf-infraType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add first-fluke/oh-my-agent --skill oma-tf-infra -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install first-fluke/oh-my-agent oma-tf-infra --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/first-fluke/oh-my-agent.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/oma-tf-infra .agents/skills/oma-tf-infra && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "oma-tf-infra" agent skill from https://github.com/first-fluke/oh-my-agent/tree/main/skills/oma-tf-infra into .agents/skills/oma-tf-infra/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oma-tf-infra", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add first-fluke/oh-my-agent --skill oma-tf-infra -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install first-fluke/oh-my-agent oma-tf-infra --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/first-fluke/oh-my-agent.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/oma-tf-infra .cursor/skills/oma-tf-infra && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "oma-tf-infra" agent skill from https://github.com/first-fluke/oh-my-agent/tree/main/skills/oma-tf-infra into .cursor/skills/oma-tf-infra/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oma-tf-infra", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/first-fluke/oh-my-agent.git --path skills/oma-tf-infra--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add first-fluke/oh-my-agent --skill oma-tf-infra -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install first-fluke/oh-my-agent oma-tf-infra --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/first-fluke/oh-my-agent.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/oma-tf-infra .gemini/skills/oma-tf-infra && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "oma-tf-infra" agent skill from https://github.com/first-fluke/oh-my-agent/tree/main/skills/oma-tf-infra into .gemini/skills/oma-tf-infra/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oma-tf-infra", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install first-fluke/oh-my-agent oma-tf-infraInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add first-fluke/oh-my-agent --skill oma-tf-infra -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/first-fluke/oh-my-agent.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/oma-tf-infra .github/skills/oma-tf-infra && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "oma-tf-infra" agent skill from https://github.com/first-fluke/oh-my-agent/tree/main/skills/oma-tf-infra into .github/skills/oma-tf-infra/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oma-tf-infra", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add first-fluke/oh-my-agent --skill oma-tf-infra -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install first-fluke/oh-my-agent oma-tf-infra --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/first-fluke/oh-my-agent.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/oma-tf-infra .opencode/skills/oma-tf-infra && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "oma-tf-infra" agent skill from https://github.com/first-fluke/oh-my-agent/tree/main/skills/oma-tf-infra into .opencode/skills/oma-tf-infra/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oma-tf-infra", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
oma-tf-infraCreate or review Terraform infrastructure and plans. An agent skill from first-fluke/oh-my-agent.
Oma Tf Infra is an agent skill from first-fluke/oh-my-agent. Create or review Terraform infrastructure and plans. Use for cloud resources, IAM, networking, state management, and infrastructure changes.
Its SKILL.md is about 2.8k tokens, which your agent loads only when the skill is triggered. The skill folder holds 34 other files, including reference files (for example `references/_shared/conditional/experiment-ledger.md`, `references/_shared/conditional/exploration-loop.md` and `references/_shared/conditional/quality-score.md`).
It sits in DevOps & Cloud, covering Infrastructure as code and State management. It works with Terraform. The repository describes itself as: Mechanical verification for AI coding agents — skills pack or full harness (stop-hook gates, artifact checks, independent judges). The licence is MIT.
3 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit 268bb4a. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
terraformtrivyFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Oma Tf Infra loads about 2.8k tokens when it runs, and up to ~17k if it reads all its reference files. Until then it costs about 38 tokens; SKILL.md has 1,229 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from first-fluke/oh-my-agent at commit 268bb4a, republished under its MIT licence (© first-fluke). 1,229 words, ~2,832 tokens.
.claude/skills/oma-tf-infra/SKILL.md (or your agent's skills folder). This skill also uses 29 other files; get the full folder from GitHub.Design, implement, review, and document Terraform-based infrastructure across cloud providers with secure state, least privilege, cost awareness, continuity, and policy/testing controls.
.tf, .tfvars, modules, provider versions, CI/CD auth, plan output, or drift symptomsresources/multi-cloud-examples.md, cost guide, policy/testing examples, ISO infra guide, and checklist| Action | SSL primitive | Evidence |
|---|---|---|
| Detect provider and scope | READ | HCL, providers, modules |
| Select cloud/resource mapping | SELECT | Multi-cloud mapping |
| Write Terraform | WRITE | .tf, .tfvars, modules |
| Validate HCL | CALL_TOOL | terraform fmt, validate, plan |
| Compare plan risk | COMPARE | Plan output and drift |
| Infer cost/security/continuity risks | INFER | Policy, ISO, cost guides |
| Report result | NOTIFY | Final infra summary |
trivy config, successor to tfsec), OPA/Sentinel, native terraform test, Terratest when applicableterraform init # required before validate/plan (-backend=false for static-only checks)
terraform fmt -recursive
terraform validate
terraform plan -out=tfplanRun scanners when available before any apply:
checkov -d .
trivy config . # tfsec is in maintenance mode; Trivy is its successor| Scope | Resource target |
|---|---|
CODEBASE | Terraform modules, variables, outputs, CI config |
LOCAL_FS | Plans, state config, documentation |
PROCESS | Terraform, scanner, and policy commands |
CREDENTIALS | Cloud provider auth and state backend credentials |
NETWORK | Cloud APIs and remote state backends |
terraform validate, terraform fmt, terraform plan before applyfor_each over count (never count with computed values)auto-approve in production; never terraform destroy without backup/confirmation| Indicator | Provider |
|---|---|
provider "google" or google_* resources | GCP |
provider "aws" or aws_* resources | AWS |
provider "azurerm" or azurerm_* resources | Azure |
provider "oci" or oci_* resources | Oracle Cloud |
| Concept | AWS | GCP | Azure | Oracle (OCI) |
|---|---|---|---|---|
| Container Platform | ECS Fargate | Cloud Run | Container Apps | Container Instances |
| Managed Kubernetes | EKS | GKE | AKS | OKE |
| Managed Database | RDS | Cloud SQL | Azure SQL | Autonomous DB |
| Cache/In-Memory | ElastiCache | Memorystore | Azure Cache | OCI Cache |
| Object Storage | S3 | GCS | Blob Storage | Object Storage |
| Queue/Messaging | SQS/SNS | Pub/Sub | Service Bus | OCI Streaming |
| Task Queue | N/A | Cloud Tasks | Queue Storage | N/A |
| CDN | CloudFront | Cloud CDN | Front Door | OCI CDN |
| Load Balancer | ALB/NLB | Cloud Load Balancing | Load Balancer | OCI Load Balancer |
| IAM Role | IAM Role | Service Account | Managed Identity | Dynamic Group |
| Secrets | Secrets Manager | Secret Manager | Key Vault | OCI Vault |
| VPC | VPC | VPC | Virtual Network | VCN |
| Serverless Function | Lambda | Cloud Functions | Functions | OCI Functions |
resources/execution-protocol.mdresources/checklist.mdresources/examples.mdresources/multi-cloud-examples.mdresources/cost-optimization.mdresources/policy-testing-examples.mdresources/iso-42001-infra.mdresources/error-playbook.mdreferences/_shared/core/context-loading.mdreferences/_shared/core/clarification-protocol.mdreferences/_shared/core/context-budget.mdreferences/_shared/core/difficulty-guide.md (unresolved scope or dependencies)references/_shared/core/lessons-learned.md (matching prior failure or requested retrospective)../oma-observability/SKILL.md §Integrations — Collector topology, transport tuning, release metadataterraform, opentofu, infrastructure-as-code, iac, cloud, aws, gcp, azure, oracle, oci, multi-cloud, devops, provisioning, infrastructure, compute, database, storage, networking, iam, oidc, workload identity, container, kubernetes, serverless, vpc, subnet, load balancer, cdn, secrets management, ephemeral resources, write-only arguments, state management, drift, import block, terraform test, trivy, checkov, infracost, backend, provider
© first-fluke, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 29 other files (references) in skills/oma-tf-infra of first-fluke/oh-my-agent.
Open the folder on GitHubat commit 268bb4a
We found 2 copies of this SKILL.md (exact, near-identical or edited) in other folders. This page covers the copy in first-fluke/oh-my-agent, which our catalogue first saw on October 7, 2026.
Oma Tf Infra next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Oma Tf Infra this skillfirst-fluke/oh-my-agent | 1.3k | — | ~2.8k | Automated safety check: Pass | MIT | |
| Terraform Specialistdavila7/claude-code-templates | 33k | 8 repos | ~2.3k | Automated safety check: Pass | MIT | |
| Sdaf State ManagementAzure/sap-automation | 146 | — | ~1.7k | Automated safety check: Pass | MIT | |
| TerraformRightNow-AI/openfang | 18k | — | ~645 | Automated safety check: Pass | Apache-2.0 | |
| Terraform Provider Upgradethomast1906/github-copilot-agent-skills | 202 | — | ~3.9k | Automated safety check: Pass | None | |
| Terraform and OpenTofu Guideagentscope-ai/QwenPaw | 36k | 6 repos | ~4.2k | Automated safety check: Pass | Apache-2.0 |
davila7/claude-code-templates
Expert Terraform/OpenTofu specialist mastering advanced IaC automation, state management, and enterprise infrastructure patterns.
Azure/sap-automation
Inspect and repair SDAF Terraform state safely before any reviewed import/remove.
RightNow-AI/openfang
Terraform IaC expert for providers, modules, state management, and planning
thomast1906/github-copilot-agent-skills
Safe Terraform provider upgrades with automatic resource migration, breaking change detection, and state management using moved blocks.
agentscope-ai/QwenPaw
Guidance for writing and testing Terraform and OpenTofu code: module structure, naming, test approaches, CI/CD workflows, state handling and security scanning.
antonbabenko/terraform-skill
A skill your agent uses when writing, reviewing, or debugging Terraform/OpenTofu modules, tests, CI, scans, or state ops - diagnoses failure mode (identity churn, secrets, blast radius, CI drift…
first-fluke/oh-my-agent
Decomposes a complex feature into tasks, dispatches parallel specialist agents with durable state, and supervises verification, QA review and retries.
first-fluke/oh-my-agent
Splits a complex feature into prioritized tasks, spawns specialist CLI subagents in parallel, tracks them through shared memory and verifies each result.
first-fluke/oh-my-agent
Evaluates system boundaries and tradeoffs and writes architecture recommendations, option comparisons or ADRs, with a Mermaid diagram when structure changes.
first-fluke/oh-my-agent
Explores goals, constraints and alternative designs one question at a time and saves an approved design document before any planning or coding starts.
first-fluke/oh-my-agent
Coordinate assigned specialist tasks and handoffs manually. An agent skill from first-fluke/oh-my-agent.
first-fluke/oh-my-agent
Generate raster images or reference-guided variations through the OMA image CLI.
Works with
Categories
Create or review Terraform infrastructure and plans. An agent skill from first-fluke/oh-my-agent. Oma Tf Infra is an agent skill from first-fluke/oh-my-agent. Create or review Terraform infrastructure and plans.
Oma Tf Infra fits situations like: cloud resources; state management; infrastructure changes.
Run `npx skills add first-fluke/oh-my-agent --skill oma-tf-infra -a claude-code`. Or copy the skill folder (skills/oma-tf-infra in first-fluke/oh-my-agent) into .claude/skills/oma-tf-infra in your project. Claude Code loads it when a task matches its description.
Run `npx skills add first-fluke/oh-my-agent --skill oma-tf-infra -a codex`. Or copy the skill folder (skills/oma-tf-infra in first-fluke/oh-my-agent) into .agents/skills/oma-tf-infra in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add first-fluke/oh-my-agent --skill oma-tf-infra -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/oma-tf-infra, .gemini/skills/oma-tf-infra, .github/skills/oma-tf-infra and .opencode/skills/oma-tf-infra in your project.
Going by SKILL.md and its folder, Oma Tf Infra needs the command-line tools its instructions call (terraform and trivy).
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Oma Tf Infra is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.8k tokens (SKILL.md is roughly 11k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 14k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Oma Tf Infra: Terraform Specialist (davila7/claude-code-templates, 33k stars), Sdaf State Management (Azure/sap-automation, 146 stars), Terraform (RightNow-AI/openfang, 18k stars) and Terraform Provider Upgrade (thomast1906/github-copilot-agent-skills, 202 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
first-fluke (a GitHub organization) maintains it in first-fluke/oh-my-agent, which has 1,336 GitHub stars. The repository holds 57 skills in this directory. The repository was last updated on October 10, 2026.
Source: first-fluke/oh-my-agent on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.