Official agent skill

Aks Network Capture

by microsoft in microsoft/GitHub-Copilot-for-Azure

Collects bounded packet captures from AKS nodes and Azure network configuration for wire-level evidence.

OfficialMITAuto-check passedDevOps & Cloud

Install Aks Network Capture

skills CLI
$ npx skills add microsoft/GitHub-Copilot-for-Azure --skill aks-network-capture -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install microsoft/GitHub-Copilot-for-Azure aks-network-capture --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/microsoft/GitHub-Copilot-for-Azure.git skills-src && mkdir -p .claude/skills && cp -r skills-src/plugins/aks-skills/skills/aks-network-capture .claude/skills/aks-network-capture && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
aks-network-capture
GitHub stars
255
Token cost
~738 tokens
SKILL.md length
281 words
Files
14 (incl. scripts, references)
Skills in repo
61
Repo updated
First seen
Licence
MIT

At a glance

Collects bounded packet captures from AKS nodes and Azure network configuration for wire-level evidence.

  • Works in 6 steps: Check host capabilities, then complete… → Install Bash / PowerShell. → Capture nodes or pods with Bash /… → …
  • Explicit packet-capture intent after read-only diagnostics
  • SKILL.md covers Quick Reference, When to Use This Skill, MCP Tools and Host Capability Gate, plus 2 more sections
  • Runs Shell and PowerShell scripts from its folder

What it does

Aks Network Capture is an agent skill from microsoft/GitHub-Copilot-for-Azure, published by the product's own GitHub organization. Collects bounded packet captures from AKS nodes and Azure network configuration for wire-level evidence. WHEN: "capture packets on an AKS node", "take a pcap", "run tcpdump on AKS", "prove where packets drop". Use for explicit packet-capture intent after read-only diagnostics, not general AKS connectivity or ingress troubleshooting.

Its SKILL.md is about 740 tokens, which your agent loads only when the skill is triggered. The skill folder holds 15 other files, including scripts and reference files (for example `references/capture-authorization.md`, `scripts/collect-azure-network-info.sh` and `scripts/create-capture.sh`).

It sits in DevOps & Cloud, covering Cloud networking and Shell scripting. It works with Microsoft Azure and Kubernetes. The repository describes itself as: GitHub Copilot for Azure. The licence is MIT.

When your agent uses it

  • Explicit packet-capture intent after read-only diagnostics
  • Not general AKS connectivity
  • Ingress troubleshooting

Example prompts

  • “capture packets on an AKS node”
  • “take a pcap”
  • “run tcpdump on AKS”
  • “/aks-network-capture”

Requirements

  • A Bash shell
  • PowerShell

Workflow steps

6 steps, taken from the first numbered list in SKILL.md.

  1. Check host capabilities, then complete authorization and target binding.
  2. Install Bash / PowerShell.
  3. Capture nodes or pods with Bash / PowerShell.
  4. Generate traffic if approved with Bash / PowerShell.
  5. Retrieve the exact run with Bash / PowerShell.
  6. Gather Azure evidence with Bash / PowerShell.

What it can do on your machine

Read from SKILL.md and the folder at commit ce94fce. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 11 files in scripts/ (Shell and PowerShell), which the agent can run.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Aks Network Capture loads about 738 tokens when it runs, and up to ~1.1k if it reads all its reference files. Until then it costs about 89 tokens; SKILL.md has 281 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~89
When it runs · the whole SKILL.md, loaded when a task matches
~738
With references · SKILL.md plus every file in references/, read only if the agent opens them
~1.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from microsoft/GitHub-Copilot-for-Azure at commit ce94fce, republished under its MIT licence (© microsoft). 281 words, ~738 tokens.

Download SKILL.mdSave it as .claude/skills/aks-network-capture/SKILL.md (or your agent's skills folder). This skill also uses 13 other files; get the full folder from GitHub.
name
aks-network-capture
description
Collects bounded packet captures from AKS nodes and Azure network configuration for wire-level evidence. WHEN: "capture packets on an AKS node", "take a pcap", "run tcpdump on AKS", "prove where packets drop". Use for explicit packet-capture intent after read-only diagnostics, not general AKS connectivity or ingress troubleshooting.
license
MIT
metadata.author
Microsoft
metadata.version
0.0.0-placeholder

AKS Network Capture

Quick Reference

UseRequiresSafety
AKS pcap evidencekubectl; az for Azure evidenceBounded, pinned, least privilege

When to Use This Skill

Use for explicit packet capture after read-only checks, not generic connectivity failures.

MCP Tools

Azure MCP's AKS area provides cluster and node-pool metadata, not Kubernetes command execution or packet capture.

Host Capability Gate

Before executing the workflow, confirm that the host permits the required Bash or PowerShell execution, kubectl access to the bound cluster, az for Azure evidence, access to the bundled scripts, and an approved artifact destination. A governed Azure CLI tool alone does not establish that shell, Kubernetes commands, or artifact operations are supported.

If a required capability is unavailable or prohibited, state that capture execution is unavailable in this host. Analyze supplied, appropriately redacted evidence or give the operator a target-bound collection/capture plan; do not claim to have run it. Never route kubectl through Azure MCP, add an unapproved execution path, or bypass host policy. Host support does not replace the mutation and sensitive-data approvals below.

Run bundled scripts from the skill root only after this gate is satisfied.

Workflow/Steps

  1. Check host capabilities, then complete authorization and target binding. Capture intent is not mutation consent. Stop for separate approval before any debug-container fallback.
  2. Install Bash / PowerShell.
  3. Capture nodes or pods with Bash / PowerShell.
  4. Generate traffic if approved with Bash / PowerShell.
  5. Retrieve the exact run with Bash / PowerShell.
  6. Gather Azure evidence with Bash / PowerShell.

The ConfigMap runs run-capture.sh inside its pinned Linux image.

Error Handling

ErrorAction
Invalid inputCorrect it before retrying.
Missing/stale ConfigMapRun setup again.
Capture/retrieval failureInspect Job logs; missing evidence is not success.

© microsoft, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 13 other files (scripts, references) in plugins/aks-skills/skills/aks-network-capture of microsoft/GitHub-Copilot-for-Azure.

  • SKILL.md
  • references/capture-authorization.md
  • scripts/collect-azure-network-info.ps1
  • scripts/collect-azure-network-info.sh
  • scripts/create-capture.ps1
  • scripts/create-capture.sh
  • scripts/generate-test-traffic.ps1
  • scripts/generate-test-traffic.sh
  • scripts/retrieve-captures.ps1
  • scripts/retrieve-captures.sh
  • scripts/run-capture.sh
  • scripts/setup-capture-configmap.ps1
  • scripts/setup-capture-configmap.sh
  • version.json

Open the folder on GitHubat commit ce94fce

Compare with similar skills

Aks Network Capture next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Aks Network Capture compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Aks Network Capture this skillmicrosoft/GitHub-Copilot-for-Azure255—~738Automated safety check: PassMIT
Aks Deployment Skilltimothywarner/chatgptclass143—~916Automated safety check: PassCustom licence
Managing DNSancoleman/ai-design-components526—~3.6kAutomated safety check: NotesMIT
Kubeshark KFL2 Filter Referencekubeshark/kubeshark12k—~3.6kAutomated safety check: PassApache-2.0
Nginx To Higress Migrationhigress-group/higress9.5k—~3.9kAutomated safety check: PassApache-2.0
NGINX Ingress Controller Feature Checklistsnginx/kubernetes-ingress5.1k—~1.4kAutomated safety check: PassApache-2.0

Similar skills

  • Aks Deployment Skill

    timothywarner/chatgptclass

    Deploy and operate workloads on Azure Kubernetes Service (AKS) the safe way.

    143 GitHub stars~916 tokensUpdated 20 days ago
    DevOps & CloudAuto-check passed
  • Managing DNS

    ancoleman/ai-design-components

    Manage DNS records, TTL strategies, and DNS-as-code automation for infrastructure.

    526 GitHub stars~3.6k tokensUpdated 10 mo ago
    DevOps & CloudAuto-check: notes
  • Syntax reference for KFL2, the CEL-based display filter language used to search Kubernetes network traffic captured by Kubeshark, loaded before any filter is written.

    12k GitHub stars~3.6k tokensUpdated 2 days ago
    DevOps & CloudAuto-check passed
  • Nginx To Higress Migration

    higress-group/higress

    Migrate from ingress-nginx to Higress in Kubernetes environments.

    9.5k GitHub stars~3.9k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Gives step-by-step checklists for adding Ingress annotations, VirtualServer fields and Helm values to the NGINX Kubernetes Ingress Controller, with common gotchas.

    5.1k GitHub stars~1.4k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • NGINX Ingress Policy CRD Guide

    nginx/kubernetes-ingress

    Step-by-step checklist for adding a new Policy CRD type to the NGINX Ingress Controller, from the Go types and validation to config generation and templates.

    5.1k GitHub stars~2k tokensUpdated yesterday
    DevOps & CloudAuto-check passed

More from microsoft/GitHub-Copilot-for-Azure

All 61 skills in this repo
  • Capacity

    microsoft/GitHub-Copilot-for-Azure

    Official

    Discovers available Azure OpenAI model capacity across regions and projects.

    255 GitHub starsUsed in 1 repo~1.7k tokens
    Auto-check passed
  • Deploy Model

    microsoft/GitHub-Copilot-for-Azure

    Official

    Unified Azure OpenAI model deployment skill with intelligent intent-based routing.

    255 GitHub starsUsed in 1 repo~1.8k tokens
    Auto-check passed
  • Azure Storage

    microsoft/GitHub-Copilot-for-Azure

    Official

    Azure Storage Services including Blob Storage, File Shares, Queue Storage, Table Storage, and Data Lake.

    255 GitHub starsUsed in 2 repos~1.3k tokens
    Auto-check passed
  • Microsoft Foundry

    microsoft/GitHub-Copilot-for-Azure

    Official

    Build, deploy, evaluate, optimize, fine-tune, and manage Microsoft Foundry agents, models, and resources end to end.

    255 GitHub starsUsed in 1 repo~6.7k tokens
    Auto-check passed
  • Entra Agent Id

    microsoft/GitHub-Copilot-for-Azure

    Official

    Provision Microsoft Entra Agent Identity Blueprints, BlueprintPrincipals, and per-instance Agent Identities via Microsoft Graph, and configure OAuth 2.0 token exchange (fmipath, OBO, cross-tenant)…

    255 GitHub starsUsed in 2 repos~4k tokens
    Auto-check passed
  • Azure Kubernetes Automatic Readiness

    microsoft/GitHub-Copilot-for-Azure

    Official

    Assess Kubernetes workloads and cluster configuration for AKS Automatic compatibility.

    255 GitHub starsUsed in 1 repo~4.4k tokens
    Auto-check passed

Categories

Questions about Aks Network Capture

What does Aks Network Capture do?

Collects bounded packet captures from AKS nodes and Azure network configuration for wire-level evidence. Aks Network Capture is an agent skill from microsoft/GitHub-Copilot-for-Azure, published by the product's own GitHub organization. Collects bounded packet captures from AKS nodes and Azure network configuration for wire-level evidence.

When should I use Aks Network Capture?

Aks Network Capture fits situations like: explicit packet-capture intent after read-only diagnostics; not general AKS connectivity; ingress troubleshooting.

How do I install Aks Network Capture in Claude Code?

Run `npx skills add microsoft/GitHub-Copilot-for-Azure --skill aks-network-capture -a claude-code`. Or copy the skill folder (plugins/aks-skills/skills/aks-network-capture in microsoft/GitHub-Copilot-for-Azure) into .claude/skills/aks-network-capture in your project. Claude Code loads it when a task matches its description.

How do I install Aks Network Capture in Codex?

Run `npx skills add microsoft/GitHub-Copilot-for-Azure --skill aks-network-capture -a codex`. Or copy the skill folder (plugins/aks-skills/skills/aks-network-capture in microsoft/GitHub-Copilot-for-Azure) into .agents/skills/aks-network-capture in your project. Codex loads it when a task matches its description.

Can I use Aks Network Capture in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add microsoft/GitHub-Copilot-for-Azure --skill aks-network-capture -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/aks-network-capture, .gemini/skills/aks-network-capture, .github/skills/aks-network-capture and .opencode/skills/aks-network-capture in your project.

What does Aks Network Capture need to run?

Going by SKILL.md and its folder, Aks Network Capture needs a shell and PowerShell for the scripts in its folder. Our summary lists: A Bash shell; PowerShell.

Does Aks Network Capture access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Aks Network Capture safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Aks Network Capture use?

Aks Network Capture is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Aks Network Capture use?

About 738 tokens (SKILL.md is roughly 3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 371 tokens, read only when the agent opens those files.

What are the alternatives to Aks Network Capture?

Skills that share tags, products or a category with Aks Network Capture: Aks Deployment Skill (timothywarner/chatgptclass, 143 stars), Managing DNS (ancoleman/ai-design-components, 526 stars), Kubeshark KFL2 Filter Reference (kubeshark/kubeshark, 12k stars) and Nginx To Higress Migration (higress-group/higress, 9.5k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Aks Network Capture?

microsoft (a GitHub organization, an official publisher) maintains it in microsoft/GitHub-Copilot-for-Azure, which has 255 GitHub stars. The repository holds 61 skills in this directory. The repository was last updated on October 9, 2026.

Source: microsoft/GitHub-Copilot-for-Azure on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.