Kubeshark Installer
kubeshark/kubeshark
Installs and configures Kubeshark on a Kubernetes cluster, choosing between the quick CLI path and a Helm install with custom values.
Tail logs, inspect pods, and diagnose unhealthy services in a running Michelangelo sandbox.
$ npx skills add michelangelo-ai/michelangelo --skill ma-sandbox-debug -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install michelangelo-ai/michelangelo ma-sandbox-debug --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/michelangelo-ai/michelangelo.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/ma-sandbox-debug .claude/skills/ma-sandbox-debug && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "ma-sandbox-debug" agent skill from https://github.com/michelangelo-ai/michelangelo/tree/main/.claude/skills/ma-sandbox-debug into .claude/skills/ma-sandbox-debug/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ma-sandbox-debug", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/michelangelo-ai/michelangelo/tree/main/.claude/skills/ma-sandbox-debugType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add michelangelo-ai/michelangelo --skill ma-sandbox-debug -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install michelangelo-ai/michelangelo ma-sandbox-debug --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/michelangelo-ai/michelangelo.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.claude/skills/ma-sandbox-debug .agents/skills/ma-sandbox-debug && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "ma-sandbox-debug" agent skill from https://github.com/michelangelo-ai/michelangelo/tree/main/.claude/skills/ma-sandbox-debug into .agents/skills/ma-sandbox-debug/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ma-sandbox-debug", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add michelangelo-ai/michelangelo --skill ma-sandbox-debug -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install michelangelo-ai/michelangelo ma-sandbox-debug --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/michelangelo-ai/michelangelo.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.claude/skills/ma-sandbox-debug .cursor/skills/ma-sandbox-debug && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "ma-sandbox-debug" agent skill from https://github.com/michelangelo-ai/michelangelo/tree/main/.claude/skills/ma-sandbox-debug into .cursor/skills/ma-sandbox-debug/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ma-sandbox-debug", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/michelangelo-ai/michelangelo.git --path .claude/skills/ma-sandbox-debug--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add michelangelo-ai/michelangelo --skill ma-sandbox-debug -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install michelangelo-ai/michelangelo ma-sandbox-debug --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/michelangelo-ai/michelangelo.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.claude/skills/ma-sandbox-debug .gemini/skills/ma-sandbox-debug && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "ma-sandbox-debug" agent skill from https://github.com/michelangelo-ai/michelangelo/tree/main/.claude/skills/ma-sandbox-debug into .gemini/skills/ma-sandbox-debug/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ma-sandbox-debug", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install michelangelo-ai/michelangelo ma-sandbox-debugInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add michelangelo-ai/michelangelo --skill ma-sandbox-debug -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/michelangelo-ai/michelangelo.git skills-src && mkdir -p .github/skills && cp -r skills-src/.claude/skills/ma-sandbox-debug .github/skills/ma-sandbox-debug && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "ma-sandbox-debug" agent skill from https://github.com/michelangelo-ai/michelangelo/tree/main/.claude/skills/ma-sandbox-debug into .github/skills/ma-sandbox-debug/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ma-sandbox-debug", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add michelangelo-ai/michelangelo --skill ma-sandbox-debug -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install michelangelo-ai/michelangelo ma-sandbox-debug --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/michelangelo-ai/michelangelo.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.claude/skills/ma-sandbox-debug .opencode/skills/ma-sandbox-debug && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "ma-sandbox-debug" agent skill from https://github.com/michelangelo-ai/michelangelo/tree/main/.claude/skills/ma-sandbox-debug into .opencode/skills/ma-sandbox-debug/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ma-sandbox-debug", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
ma-sandbox-debugTail logs, inspect pods, and diagnose unhealthy services in a running Michelangelo sandbox.
Ma Sandbox Debug is an agent skill from michelangelo-ai/michelangelo. Tail logs, inspect pods, and diagnose unhealthy services in a running Michelangelo sandbox. Use when a service is crashlooping, returning errors, or not responding as expected. Triggers on "check logs", "why is X failing", "debug sandbox", "kubectl logs".
Its SKILL.md is about 1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in DevOps & Cloud, covering Container orchestration. It works with Kubernetes. The repository describes itself as: Michelangelo AI: Uber's end-to-end machine learning platform. The licence is Apache-2.0.
3 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit f672cca. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
kubectlgitbashFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use kubectl and git, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Ma Sandbox Debug loads about 1k tokens when it runs. Until then it costs about 68 tokens; SKILL.md has 347 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from michelangelo-ai/michelangelo at commit f672cca, republished under its Apache-2.0 licence (© michelangelo-ai). 347 words, ~1,030 tokens.
.claude/skills/ma-sandbox-debug/SKILL.md (or your agent's skills folder).Diagnosing service failures in a running sandbox. Start with health overview, then drill into specific services.
ma sandbox health # high-level check: cluster, pods, API, envoy, UI
kubectl get pods -A # full pod inventory with statusIF kubectl get pods -A output contains any pod in CrashLoopBackOff, Error, or ImagePullBackOff state (excluding expected noise listed below): proceed to Step 3 for each affected pod.
IF a pod is stuck Pending beyond 3 minutes: proceed to Step 3 for that pod.
IF all pods show Running or Completed: report the cluster as healthy and stop — do not continue to Step 2 unless the user reports a specific symptom.
# apiserver — handles all API requests (Go)
kubectl logs -f deployment/michelangelo-apiserver
# worker — handles async tasks
kubectl logs -f deployment/michelangelo-worker
# controller manager
kubectl logs -f deployment/michelangelo-controllermgr
# envoy — ingress proxy (proxy errors appear here, not in apiserver)
kubectl logs -f deployment/michelangelo-envoy
# UI — nginx serving the frontend bundle
kubectl logs -f deployment/michelangelo-uiUseful flags: --tail=100 to limit output; --previous to see logs from the last crashed container instance.
Go services default to info level. Enable debug logging for deeper investigation:
bash $(git rev-parse --show-toplevel)/.claude/skills/ma-sandbox-scripts/set_log_level.sh controllermgr debugRevert when done: replace debug with info. Pair with $(git rev-parse --show-toplevel)/.claude/skills/ma-sandbox-scripts/capture_service_logs.sh to filter the resulting output down to signal.
# Get the pod name
kubectl get pods -l app.kubernetes.io/component=apiserver
# Events and last exit reason
kubectl describe pod <pod-name>
# Logs from the previous crashed instance
kubectl logs <pod-name> --previousThe Events section and Last State (exit code, reason) in describe output are the most diagnostic fields.
| Symptom | Where to look | Likely cause |
|---|---|---|
| UI loads, API returns 503 | envoy logs | Envoy can't reach apiserver |
| UI loads but shows no data | kubectl get projects,pipelines,pipelineruns -A | No demo data seeded — run ma sandbox demo pipeline. If resources exist but UI is empty, check envoy logs |
| API returns 500 | apiserver logs | Go panic or DB connection error |
Pod in CrashLoopBackOff | describe pod, --previous logs | OOM, missing config, bad binary |
Pod stuck Pending | describe pod Events | No node resources or PVC mount failure |
ImagePullBackOff | describe pod Events | Image not imported — run k3d image import |
| Feature broken after deploy | apiserver logs | Business logic bug in the deployed binary |
create failed partway / "cluster already exists" | — | Run ma sandbox sync to finish — don't delete+recreate |
kubectl logs deployment/michelangelo-apiserver | grep -i "error\|panic\|fatal"
kubectl logs deployment/michelangelo-worker --tail=200When a service isn't crashing but isn't picking up new config or code:
kubectl rollout restart deployment/michelangelo-apiserver
kubectl rollout status deployment/michelangelo-apiserver --timeout=60scadence-schema-init, ingester-schema-init, sandbox-bucket-setup — reach Completed and stay there; this is correctIf the cluster state is unrecoverable, do a full reset: /ma-sandbox-reset.
© michelangelo-ai, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in .claude/skills/ma-sandbox-debug of michelangelo-ai/michelangelo.
Open the folder on GitHubat commit f672cca
Ma Sandbox Debug next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Ma Sandbox Debug this skillmichelangelo-ai/michelangelo | 118 | — | ~1k | Automated safety check: Pass | Apache-2.0 | |
| Kubeshark Installerkubeshark/kubeshark | 12k | — | ~3.6k | Automated safety check: Notes | Apache-2.0 | |
| KubeSphere Multi-Tenant Managementkubesphere/kubesphere | 17k | — | ~3.1k | Automated safety check: Pass | Custom licence | |
| Sim Helmsimstudioai/sim | 30k | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | |
| Helm Chart ScaffoldingCybereason-Public/owLSM | 280 | 13 repos | ~381 | Automated safety check: Pass | GPL-2.0 | |
| Kubeshark KFL2 Filter Referencekubeshark/kubeshark | 12k | — | ~3.6k | Automated safety check: Pass | Apache-2.0 |
kubeshark/kubeshark
Installs and configures Kubeshark on a Kubernetes cluster, choosing between the quick CLI path and a Helm install with custom values.
kubesphere/kubesphere
Creates and queries KubeSphere users, workspaces and projects and assigns built-in roles, defaulting to least privilege and never deleting anything.
simstudioai/sim
Install, upgrade, and operate the Sim Helm chart on Kubernetes.
Cybereason-Public/owLSM
Comprehensive guidance for creating, organizing, and managing Helm charts for packaging and deploying Kubernetes applications.
kubeshark/kubeshark
Syntax reference for KFL2, the CEL-based display filter language used to search Kubernetes network traffic captured by Kubeshark, loaded before any filter is written.
kubesphere/kubesphere
Installs, checks and troubleshoots the KubeSphere ServiceMesh extension (Istio, Kiali, Jaeger), including grayscale release, sidecar injection, topology and tracing issues.
michelangelo-ai/michelangelo
Build a Go service binary, package it into a Docker image, import into k3d, and deploy via helm sync.
michelangelo-ai/michelangelo
Canonical setup sequence for the Michelangelo local sandbox.
michelangelo-ai/michelangelo
Build, test, and verify a sandbox change across Go, JS, and Python.
michelangelo-ai/michelangelo
Update Michelangelo documentation. An agent skill from michelangelo-ai/michelangelo.
michelangelo-ai/michelangelo
Structured interview for designing and implementing changes to the Michelangelo platform.
michelangelo-ai/michelangelo
Tear down the Michelangelo sandbox cluster and recreate it from scratch.
Works with
Categories
Tail logs, inspect pods, and diagnose unhealthy services in a running Michelangelo sandbox. Ma Sandbox Debug is an agent skill from michelangelo-ai/michelangelo. Tail logs, inspect pods, and diagnose unhealthy services in a running Michelangelo sandbox.
Ma Sandbox Debug fits situations like: A service is crashlooping; returning errors; not responding as expected; why is X failing.
Run `npx skills add michelangelo-ai/michelangelo --skill ma-sandbox-debug -a claude-code`. Or copy the skill folder (.claude/skills/ma-sandbox-debug in michelangelo-ai/michelangelo) into .claude/skills/ma-sandbox-debug in your project. Claude Code loads it when a task matches its description.
Run `npx skills add michelangelo-ai/michelangelo --skill ma-sandbox-debug -a codex`. Or copy the skill folder (.claude/skills/ma-sandbox-debug in michelangelo-ai/michelangelo) into .agents/skills/ma-sandbox-debug in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add michelangelo-ai/michelangelo --skill ma-sandbox-debug -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/ma-sandbox-debug, .gemini/skills/ma-sandbox-debug, .github/skills/ma-sandbox-debug and .opencode/skills/ma-sandbox-debug in your project.
Going by SKILL.md and its folder, Ma Sandbox Debug needs the command-line tools its instructions call (kubectl, git and bash).
SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Ma Sandbox Debug is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1k tokens (SKILL.md is roughly 4.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Ma Sandbox Debug: Kubeshark Installer (kubeshark/kubeshark, 12k stars), KubeSphere Multi-Tenant Management (kubesphere/kubesphere, 17k stars), Sim Helm (simstudioai/sim, 30k stars) and Helm Chart Scaffolding (Cybereason-Public/owLSM, 280 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
michelangelo-ai (a GitHub organization) maintains it in michelangelo-ai/michelangelo, which has 118 GitHub stars. The repository holds 9 skills in this directory. The repository was last updated on October 9, 2026.
Source: michelangelo-ai/michelangelo on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.