Agent skill

Query Netdata Cloud

by netdata in netdata/netdata

Query or explain Netdata Cloud APIs for metrics, logs, topology, flows, alerts, DynCfg, Functions and discovery; review Cloud-query recipes.

GPL-3.0Auto-check: notesDevOps & Cloud

Install Query Netdata Cloud

skills CLI
$ npx skills add netdata/netdata --skill query-netdata-cloud -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install netdata/netdata query-netdata-cloud --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/netdata/netdata.git skills-src && mkdir -p .claude/skills && cp -r skills-src/docs/netdata-ai/skills/query-netdata-cloud .claude/skills/query-netdata-cloud && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
query-netdata-cloud
GitHub stars
81k
Token cost
~2k tokens
SKILL.md length
839 words
Files
20
Skills in repo
27
Repo updated
First seen
Licence
GPL-3.0

At a glance

Query or explain Netdata Cloud APIs for metrics, logs, topology, flows, alerts, DynCfg, Functions and discovery; review Cloud-query recipes.

  • DevOps & Cloud work in your project
  • SKILL.md covers Choose The Task, Domain Guides, Prerequisites and Safe Execution, plus 2 more sections
  • Calls git and jq; needs NETDATA_CLOUD_TOKEN

What it does

Query Netdata Cloud is an agent skill from netdata/netdata. Query or explain Netdata Cloud APIs for metrics, logs, topology, flows, alerts, DynCfg, Functions and discovery; review Cloud-query recipes. Use query-netdata-agents for direct Agent access.

Its SKILL.md is about 2k tokens, which your agent loads only when the skill is triggered. The skill folder holds 20 other files (for example `access-and-discovery.md`, `how-tos/INDEX.md` and `how-tos/compare-explicit-and-room-wide-node-scope.md`).

It sits in DevOps & Cloud. The repository describes itself as: The fastest path to AI-powered full stack observability, even for lean teams. The licence is GPL-3.0.

When your agent uses it

  • DevOps & Cloud work in your project

Example prompts

  • “/query-netdata-cloud”

Requirements

  • A credential in NETDATA_CLOUD_TOKEN

What it can do on your machine

Read from SKILL.md and the folder at commit 9fe30d9. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • git
    • jq

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • NETDATA_CLOUD_TOKEN

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Query Netdata Cloud loads about 2k tokens when it runs. Until then it costs about 53 tokens; SKILL.md has 839 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~53
When it runs · the whole SKILL.md, loaded when a task matches
~2k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:51
    `.env` loading. Source the helper and load configuration only for authorized execution:

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from netdata/netdata at commit 9fe30d9, republished under its GPL-3.0 licence (© netdata). 839 words, ~1,978 tokens.

Download SKILL.mdSave it as .claude/skills/query-netdata-cloud/SKILL.md (or your agent's skills folder). This skill also uses 19 other files; get the full folder from GitHub.
name
query-netdata-cloud
description
Query or explain Netdata Cloud APIs for metrics, logs, topology, flows, alerts, DynCfg, Functions and discovery; review Cloud-query recipes. Use query-netdata-agents for direct Agent access.

Query Netdata Cloud

Use this skill for Cloud REST queries and for reviewing or explaining those queries. Load the guide for the requested domain; the sibling Agent skill owns direct access and the shared query helpers.

Choose The Task

  • Explain or review: inspect the relevant guide and helper as reference material. Loading this skill does not authorize live requests, credential loading or configuration changes. An explanation need not end in a command.
  • Run a requested query: follow Prerequisites and Safe Execution, then the selected guide. Preserve authorization already given for the task; do not ask again for ordinary query steps.
  • Change configuration or invoke a state-changing Function: establish that the user requested that operation. A request to inspect data does not authorize DynCfg updates or arbitrary Function execution. HTTP method alone does not establish whether a request changes state; consult the Function or action contract.

For an execution recipe, provide a complete runnable wrapper invocation with locally supplied inputs and the response fields needed for the question. For discovery, use the endpoint appropriate to the missing identifier. Domain requirements remain in their guides; metric queries MUST set scope.contexts as explained in the metrics guide.

Domain Guides

DomainGuide
Time-series metricsquery-metrics.md
Logs (systemd-journal, windows-events, macos-logs, otel-logs)query-logs.md
Topology Functions (topology:snmp, ...)query-topology.md
Network-flow Functions (flows:netflow -- NetFlow / sFlow / IPFIX)query-flows.md
Alerts and alert transitionsquery-alerts.md
Dynamic Configuration (DynCfg)query-dyncfg.md
Generic Function invocation (table snapshots + protocol taxonomy)query-functions.md
Nodes (per-room enumeration with full metadata)query-nodes.md
Rooms (per-space enumeration)query-rooms.md
Members (per-space user enumeration)query-members.md
Event feed (audit + activity log)query-feed.md
Operational how-tos (live catalog)how-tos/INDEX.md

Prerequisites

Explanation and saved-data review need no credentials. Executable recipes require Bash, Git, curl, jq and a checkout containing the shared helper, plus access to the chosen Cloud host. Configure NETDATA_CLOUD_TOKEN and NETDATA_CLOUD_HOSTNAME locally; never request credential values in conversation. Use identifier placeholders or local discovery for space, room and node IDs. Only endpoints that include those IDs require them.

Access And Discovery covers token setup, identifier lookup and error diagnosis. Helper configuration owns the environment keys and trusted .env loading. Source the helper and load configuration only for authorized execution:

bash
source "$(git rev-parse --show-toplevel)/docs/netdata-ai/skills/query-netdata-agents/scripts/_lib.sh"
agents_load_env

Safe Execution

Credential-bearing requests MUST use agents_query_cloud, agents_query_agent or agents_call_function from the shared helper. Do not construct raw bearer-auth curl examples or print credentials. Ordinary local processing and unauthenticated probes MAY use ordinary commands when they capture or suppress sensitive responses.

Shared Safe Execution owns credential and response handling. The wrappers mask known request-auth values in their command log; they forward responses unchanged and do not scrub arbitrary request-body fields. Keep sensitive bodies in private local files (the body argument accepts @file) and capture or project sensitive responses before display. Do not display credential-issuing endpoint output through these wrappers. Avoid shell tracing around credentials. Use the minimum response fields needed for the task.

For JSON bodies, use a quoted heredoc in command substitution, or a private payload file. The helper enables set -e; an empty-delimiter read returns failure at EOF and stops the recipe. For example, after setup:

bash
SPACE="YOUR_SPACE_ID"
ROOM="YOUR_ROOM_ID"
PAYLOAD="$(cat <<'JSON'
{}
JSON
)"
agents_query_cloud POST \
  "/api/v3/spaces/$SPACE/rooms/$ROOM/nodes" "$PAYLOAD" \
  | jq '{node_count: (.nodes | length)}'

Cloud payloads can contain customer identifiers, hostnames, labels, addresses and secrets. Raw responses MUST NOT go into committed files; token, bearer and session values MUST NOT be pasted into conversation or shared artifacts. Repository workflows capture raw output privately under <repo>/.local/audits/ and report sanitized summaries. Repository contributors follow .agents/sensitive-data-discipline.md; outside a checkout apply the same redaction to shared artifacts. The public helpers' exact interfaces live in Helper Interfaces.

Show full SKILL.md (270 more words)Show less

Protocol Owners

Open these when the selected task needs the underlying protocol or schema. They describe Agent payloads and DynCfg, not Cloud-server permission mappings.

OwnerSubject
<repo>/src/plugins.d/FUNCTION_UI_REFERENCE.mdFunction envelopes, tables, logs, facets, pagination, PLAY and errors
<repo>/src/plugins.d/FUNCTION_UI_SCHEMA.jsonFunction response schema
<repo>/src/plugins.d/FUNCTION_TOPOLOGY_SCHEMA.jsonTopology response schema
<repo>/src/plugins.d/DYNCFG.mdExternal-plugin DynCfg protocol
<repo>/src/daemon/dyncfg/README.mdInternal DynCfg APIs and lifecycle

Knowledge Capture

  • For answer-only questions, deliver the requested answer. If the work reveals a reusable, evidence-backed recipe not already documented, you MUST preserve a sanitized note with the finding, supporting evidence, and proposed owning guide. In a repository checkout, use <repo-root>/.local/audits/<subject>/followups.md, reusing this skill's audit directory when available. Outside a checkout, use an appropriate local workspace. If no writable workspace is available, include the sanitized follow-up in the response instead.
  • Briefly report reusable documentation discoveries and proposed updates in the answer-only final response, even when recorded locally. Obtain authorization before those guide edits; do not delay the answer while awaiting it.
  • During authorized implementation, you MUST update this skill or its guides for reusable, evidence-backed discoveries made while doing the work, even when the documentation is not required for the code change. This needs no separate authorization. Keep how-tos/INDEX.md consistent and report the updates.
  • Guide edits arising from answer-only questions require separate authorization. Documentation capture records observed behavior; it does not authorize additional implementation or new product contracts. Commit and publication require authorization too.
  • Prefer updating an existing guide over duplicating it. Keep recipes operator-facing: fetching or using Cloud data. Developer contract validation for collectors, topology producers, schemas, fixtures, UI adapters, or aggregator handoffs belongs in the relevant project developer skill, not in this public skill.

© netdata, GPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 19 other files in docs/netdata-ai/skills/query-netdata-cloud of netdata/netdata.

  • SKILL.md
  • access-and-discovery.md
  • how-tos/INDEX.md
  • how-tos/compare-explicit-and-room-wide-node-scope.md
  • how-tos/diagnose-no-data-on-zoom-parent-retention-gaps.md
  • how-tos/find-containers-for-topology-port.md
  • how-tos/fleet-connectivity-slo-queries.md
  • how-tos/group-network-topology-by-kubernetes-pod.md
  • how-tos/validate-local-netflow-function.md
  • query-alerts.md
  • query-dyncfg.md
  • query-feed.md
  • query-flows.md
  • query-functions.md
  • query-logs.md
  • query-members.md
  • query-metrics.md
  • query-nodes.md
  • query-rooms.md
  • query-topology.md

Open the folder on GitHubat commit 9fe30d9

Compare with similar skills

Query Netdata Cloud next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Query Netdata Cloud compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Query Netdata Cloud this skillnetdata/netdata81k—~2kAutomated safety check: NotesGPL-3.0
Axiom Dashboard Builderopenclaw/clawhub9.5k—~4.9kAutomated safety check: PassMIT
Axiom Cost Controlopenclaw/clawhub9.5k—~1.7kAutomated safety check: PassMIT
ML Pipeline ExpertJeffallan/claude-skills12k1 repos~1.9kAutomated safety check: PassMIT
Sf AI Agentforce ObservabilityJaganpro/sf-skills424—~1.8kAutomated safety check: PassMIT
Verify CI Impactgodatadriven/whirl205—~1.3kAutomated safety check: PassApache-2.0

Similar skills

  • Axiom Dashboard Builder

    openclaw/clawhub

    Designs and deploys Axiom dashboards through the API, choosing chart types and writing APL or metrics queries, with templates and migration notes for Splunk and Grafana.

    9.5k GitHub stars~4.9k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Axiom Cost Control

    openclaw/clawhub

    Finds unused data in Axiom by analyzing query patterns, then deploys a cost dashboard and ingest monitors to keep spend under the contract limit.

    9.5k GitHub stars~1.7k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • ML Pipeline Expert

    Jeffallan/claude-skills

    Designs ML pipeline infrastructure: experiment tracking with MLflow or Weights & Biases, Kubeflow and Airflow orchestration, Feast feature stores and model validation gates.

    12k GitHub starsUsed in 1 repo~1.9k tokens
    DevOps & CloudAuto-check passed
  • Agentforce session tracing extraction and analysis. An agent skill from Jaganpro/sf-skills.

    424 GitHub stars~1.8k tokensUpdated 5 mo ago
    DevOps & CloudAuto-check passed
  • Verify CI Impact

    godatadriven/whirl

    Before committing, work out which Whirl examples need a CI run to verify changes still work, then run them after confirming with the user.

    205 GitHub stars~1.3k tokensUpdated 6 days ago
    DevOps & CloudAuto-check passed
  • Add React Analytics

    gotempsh/temps

    Add Temps analytics to React applications with comprehensive tracking capabilities including page views, custom events, scroll tracking, engagement monitoring, session recording, and Web Vitals…

    822 GitHub stars~2.7k tokensUpdated today
    DevOps & CloudAuto-check passed

More from netdata/netdata

All 27 skills in this repo
  • Docs Learn PR Preview

    netdata/netdata

    Use only when the user explicitly asks to build, run, preview, inspect, or validate learn.netdata.cloud locally using the contents of a PR or documentation branch before merge.

    81k GitHub stars~2k tokensUpdated today
    Auto-check passed
  • Repo Mirror Sources

    netdata/netdata

    Inspect Netdata-org source checkouts under NETDATAREPOSDIR, or set up and synchronize that mirror when requested.

    81k GitHub stars~1.2k tokensUpdated today
    Auto-check: notes
  • Triage Agent Events

    netdata/netdata

    Investigate Netdata crashes, panics and fatals from agent-events captures or authorized fleet queries.

    81k GitHub stars~2.4k tokensUpdated today
    Auto-check: notes
  • Triage Codacy

    netdata/netdata

    Inspect, analyze, troubleshoot, or review Codacy findings and local analyzer/API helpers.

    81k GitHub stars~2.2k tokensUpdated today
    Auto-check: notes
  • Triage Coverity

    netdata/netdata

    Inspect or review Coverity Scan defects and saved CID bundles; fetch live findings or apply verified triage decisions when requested.

    81k GitHub stars~1.4k tokensUpdated today
    Auto-check passed
  • Triage Sonarqube

    netdata/netdata

    Inspect, review, or apply authorized triage decisions to SonarCloud issues and security hotspots; also review the Sonar helpers.

    81k GitHub stars~2.8k tokensUpdated today
    Auto-check: notes

Questions about Query Netdata Cloud

What does Query Netdata Cloud do?

Query or explain Netdata Cloud APIs for metrics, logs, topology, flows, alerts, DynCfg, Functions and discovery; review Cloud-query recipes. Query Netdata Cloud is an agent skill from netdata/netdata. Query or explain Netdata Cloud APIs for metrics, logs, topology, flows, alerts, DynCfg, Functions and discovery; review Cloud-query recipes.

When should I use Query Netdata Cloud?

Query Netdata Cloud fits situations like: devOps & Cloud work in your project.

How do I install Query Netdata Cloud in Claude Code?

Run `npx skills add netdata/netdata --skill query-netdata-cloud -a claude-code`. Or copy the skill folder (docs/netdata-ai/skills/query-netdata-cloud in netdata/netdata) into .claude/skills/query-netdata-cloud in your project. Claude Code loads it when a task matches its description.

How do I install Query Netdata Cloud in Codex?

Run `npx skills add netdata/netdata --skill query-netdata-cloud -a codex`. Or copy the skill folder (docs/netdata-ai/skills/query-netdata-cloud in netdata/netdata) into .agents/skills/query-netdata-cloud in your project. Codex loads it when a task matches its description.

Can I use Query Netdata Cloud in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add netdata/netdata --skill query-netdata-cloud -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/query-netdata-cloud, .gemini/skills/query-netdata-cloud, .github/skills/query-netdata-cloud and .opencode/skills/query-netdata-cloud in your project.

What does Query Netdata Cloud need to run?

Going by SKILL.md and its folder, Query Netdata Cloud needs the command-line tools its instructions call (git and jq) and credentials named NETDATA_CLOUD_TOKEN. Our summary lists: A credential in NETDATA_CLOUD_TOKEN.

Does Query Netdata Cloud access the network?

SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Query Netdata Cloud safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Query Netdata Cloud use?

Query Netdata Cloud is published under the GPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Query Netdata Cloud use?

About 2k tokens (SKILL.md is roughly 7.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Query Netdata Cloud?

Skills that share tags, products or a category with Query Netdata Cloud: Axiom Dashboard Builder (openclaw/clawhub, 9.5k stars), Axiom Cost Control (openclaw/clawhub, 9.5k stars), ML Pipeline Expert (Jeffallan/claude-skills, 12k stars) and Sf AI Agentforce Observability (Jaganpro/sf-skills, 424 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Query Netdata Cloud?

netdata (a GitHub organization) maintains it in netdata/netdata, which has 80,820 GitHub stars. The repository holds 27 skills in this directory. The repository was last updated on October 7, 2026.

Source: netdata/netdata on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.