Agent skill

Terraform Helper

by shepherdjerred in shepherdjerred/monorepo

Terraform and OpenTofu infrastructure as code - HCL, providers, modules, state management, and CLI operations When user works with .tf files, mentions Terraform, OpenTofu, tofu, HCL, infrastructure…

GPL-3.0Auto-check passedDevOps & Cloud

Install Terraform Helper

skills CLI
$ npx skills add shepherdjerred/monorepo --skill terraform-helper -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install shepherdjerred/monorepo terraform-helper --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/shepherdjerred/monorepo.git skills-src && mkdir -p .claude/skills && cp -r skills-src/packages/dotfiles/dot_agents/skills/terraform-helper .claude/skills/terraform-helper && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
terraform-helper
GitHub stars
112
Token cost
~3.6k tokens
SKILL.md length
1,028 words
Files
9 (incl. references)
Skills in repo
63
Repo updated
First seen
Licence
GPL-3.0

At a glance

Terraform and OpenTofu infrastructure as code - HCL, providers, modules, state management, and CLI operations When user works with .tf files, mentions Terraform, OpenTofu, tofu, HCL, infrastructure…

  • Works in 10 steps: Use remote state with locking for team… → Pin provider and module versions using… → Separate environments with directory… → …
  • Works with .tf files
  • SKILL.md covers What's New, Overview, CLI Commands and HCL Basics, plus 5 more sections
  • Runs Shell scripts from its folder; calls terraform, tofu and trivy

What it does

Terraform Helper is an agent skill from shepherdjerred/monorepo. Terraform and OpenTofu infrastructure as code - HCL, providers, modules, state management, and CLI operations When user works with .tf files, mentions Terraform, OpenTofu, tofu, HCL, infrastructure as code, or tf commands

Its SKILL.md is about 3.6k tokens, which your agent loads only when the skill is triggered. The skill folder holds 11 other files, including reference files (for example `references/hashicorp-search-import/MANUAL-IMPORT.md`, `references/hashicorp-search-import/list_resources.sh` and `references/hashicorp-terraform-test/CI_CD.md`).

It sits in DevOps & Cloud, covering Infrastructure as code. It works with Terraform and Amazon Web Services. The repository describes itself as: Monorepo for all of my projects. The licence is GPL-3.0.

When your agent uses it

  • Works with .tf files
  • Mentions Terraform
  • Infrastructure as code

Example prompts

  • “/terraform-helper”

Requirements

  • A Bash shell

Workflow steps

10 steps, taken from the first numbered list in SKILL.md.

  1. Use remote state with locking for team collaboration
  2. Pin provider and module versions using ~> constraints
  3. Separate environments with directory structure, not workspaces
  4. Never commit .tfvars with secrets - use environment variables or vault
  5. Run terraform plan before every apply and review changes
  6. Use moved blocks for refactoring instead of manual state manipulation
  7. Use import blocks (v1.5+) for declarative resource import
  8. Format and validate in CI with terraform fmt -check and terraform validate
  9. Scan for security issues with tflint and trivy in pre-commit hooks
  10. Use ephemeral values (v1.10+) for secrets that should not be in state

What it can do on your machine

Read from SKILL.md and the folder at commit bc57ca5. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships script files (Shell), which the agent can run.

    Shell commands in SKILL.md call:

    • terraform
    • tofu
    • trivy
    • brew

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • github.com
    • developer.hashicorp.com
    • opentofu.org
    • registry.terraform.io
    • registry.opentofu.org
    • trivy.dev
    • infracost.io

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Terraform Helper loads about 3.6k tokens when it runs, and up to ~20k if it reads all its reference files. Until then it costs about 60 tokens; SKILL.md has 1,028 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~60
When it runs · the whole SKILL.md, loaded when a task matches
~3.6k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~20k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from shepherdjerred/monorepo at commit bc57ca5, republished under its GPL-3.0 licence (© shepherdjerred). 1,028 words, ~3,647 tokens.

Download SKILL.mdSave it as .claude/skills/terraform-helper/SKILL.md (or your agent's skills folder). This skill also uses 8 other files; get the full folder from GitHub.
name
terraform-helper
description
Terraform and OpenTofu infrastructure as code - HCL, providers, modules, state management, and CLI operations When user works with .tf files, mentions Terraform, OpenTofu, tofu, HCL, infrastructure as code, or tf commands

Terraform & OpenTofu Helper Agent

What's New

Terraform 1.11 (Latest Stable)
  • Write-Only Arguments: Extend ephemeral values to managed resources; write-only arguments accept ephemeral values and are never persisted in plan or state files (e.g., password_wo on aws_db_instance)
  • Write-Only Versioning: Use _wo_version attributes to control when write-only values are re-sent to providers
Terraform 1.10
  • Ephemeral Values: Ephemeral input/output variables, ephemeral resources, and ephemeralasnull function; secrets never stored in state or plan files
  • Ephemeral Resources: Available in AWS, Azure, Kubernetes, and random providers for temporary credentials, tokens, and tunnels
  • terraform.applying Function: Distinguish between plan and apply phases in expressions
  • Performance: Refactored plan changes and reduced repeated state decoding
  • Testing: Backend blocks in run blocks, skip_cleanup attribute for test files
Terraform 1.9
  • Enhanced Variable Validation: Validation conditions can reference other variables, data sources, and locals
  • templatestring Function: Render templates from dynamic sources without saving to disk
  • Moved Block Improvements: Refactor null_resource to terraform_data via moved blocks
  • Provisioner in removed Blocks: Execute destroy-time provisioners when removing resource declarations
Terraform 1.8
  • Provider-Defined Functions: Call custom provider functions with provider::name::function() syntax
  • Cross-Type Refactoring: Move resources between different types using moved blocks (provider support required)
  • Provider Functions for AWS/GCP/K8s: ARN parsing, resource ID parsing, manifest encoding/decoding
OpenTofu 1.9
  • for_each on Providers: Aliased provider configurations support for_each for dynamic multi-instance providers
  • -exclude Flag: Exclude specific resources from plan/apply operations
  • Early Evaluation Prompts: Interactive variable prompting during early evaluation phase
  • encrypted_metadata_alias: Explicit ID control for encrypted state data
OpenTofu 1.8
  • .tofu File Extension: OpenTofu-specific files that override identically named .tf files for dual compatibility
  • Early Evaluation: Use variables and locals in backend config, module sources, and encryption config
  • Provider Mocking: Mock providers in test files for isolated unit testing
  • State Encryption: End-to-end client-side encryption with AES-GCM, PBKDF2, AWS KMS, GCP KMS key providers

Overview

Terraform and OpenTofu are infrastructure as code (IaC) tools that use HashiCorp Configuration Language (HCL) to define and provision cloud infrastructure declaratively. OpenTofu is an open-source fork (MPL 2.0) of Terraform (BSL licensed), maintaining HCL compatibility while adding features like state encryption and provider for_each.

CLI Commands

Auto-Approved Commands (Safe / Read-Only)

The following commands are safe to run without user confirmation:

  • terraform plan / tofu plan - Preview changes without applying
  • terraform validate / tofu validate - Check configuration syntax and consistency
  • terraform fmt / tofu fmt - Format HCL files to canonical style
  • terraform fmt -check - Check formatting without modifying files
  • terraform show / tofu show - Display state or plan file contents
  • terraform state list / tofu state list - List resources in state
  • terraform state show <addr> - Show attributes of a single resource
  • terraform output / tofu output - Display output values
  • terraform providers / tofu providers - Show required providers
  • terraform version / tofu version - Show version information
  • terraform graph / tofu graph - Generate dependency graph (DOT format)
  • terraform workspace list - List workspaces
  • terraform console - Interactive expression evaluation
Commands Requiring Confirmation

These commands modify infrastructure or state and need user approval:

  • terraform apply / tofu apply - Create or update infrastructure
  • terraform destroy / tofu destroy - Destroy managed infrastructure
  • terraform import / tofu import - Import existing resources into state
  • terraform state mv - Move resources within state
  • terraform state rm - Remove resources from state (does not destroy)
  • terraform state push - Overwrite remote state
  • terraform taint / terraform untaint - Mark/unmark resource for recreation
  • terraform force-unlock - Manually release a state lock
  • terraform workspace new/delete - Create or delete workspaces
Common Workflows
bash
# Initialize working directory (downloads providers, modules)
terraform init

# Format all .tf files recursively
terraform fmt -recursive

# Validate configuration
terraform validate

# Preview changes
terraform plan

# Preview changes and save plan
terraform plan -out=tfplan

# Apply saved plan (no confirmation prompt)
terraform apply tfplan

# Apply with auto-approve (use cautiously)
terraform apply -auto-approve

# Apply targeting specific resources
terraform plan -target=aws_instance.web
terraform apply -target=aws_instance.web

# Destroy specific resource
terraform destroy -target=aws_instance.web

# Generate plan for destroy
terraform plan -destroy

# Refresh state without apply
terraform apply -refresh-only

# Show outputs in JSON
terraform output -json
Initialization
bash
# Standard init
terraform init

# Upgrade providers and modules
terraform init -upgrade

# Reconfigure backend (e.g., migrating state)
terraform init -reconfigure

# Migrate state to new backend
terraform init -migrate-state

# Init with backend config from file
terraform init -backend-config=backend.hcl

# Init with backend config as key-value
terraform init -backend-config="bucket=my-state-bucket"
State Inspection
bash
# List all resources in state
terraform state list

# Show specific resource details
terraform state show aws_instance.web

# Show full state as JSON
terraform show -json

# Pull remote state locally
terraform state pull > state.json

# Show specific output
terraform output db_endpoint

HCL Basics

File Structure
project/
  main.tf          # Core resource definitions
  variables.tf     # Input variable declarations
  outputs.tf       # Output value definitions
  versions.tf      # Terraform and provider version constraints
  terraform.tfvars # Variable values (do not commit secrets)
  locals.tf        # Local value definitions (optional)
  data.tf          # Data source definitions (optional)
  backend.tf       # Backend configuration (optional)
Resource and Data Source Syntax
hcl
# Resource block
resource "aws_instance" "web" {
  ami           = "ami-0c55b159cbfafe1f0"
  instance_type = var.instance_type

  tags = {
    Name = "web-server"
  }
}

# Data source (read-only query)
data "aws_ami" "ubuntu" {
  most_recent = true
  owners      = ["099720109477"]

  filter {
    name   = "name"
    values = ["ubuntu/images/hvm-ssd/ubuntu-*-amd64-server-*"]
  }
}

# Reference data source
resource "aws_instance" "web" {
  ami = data.aws_ami.ubuntu.id
}
Variables, Outputs, and Locals
hcl
# Variable with validation
variable "instance_type" {
  type        = string
  default     = "t3.micro"
  description = "EC2 instance type"

  validation {
    condition     = contains(["t3.micro", "t3.small", "t3.medium"], var.instance_type)
    error_message = "Instance type must be t3.micro, t3.small, or t3.medium."
  }
}

# Output
output "instance_ip" {
  value       = aws_instance.web.public_ip
  description = "Public IP of the web instance"
  sensitive   = false
}

# Locals
locals {
  common_tags = {
    Environment = var.environment
    Project     = var.project_name
    ManagedBy   = "terraform"
  }
}
Provider Configuration
hcl
terraform {
  required_version = ">= 1.8"

  required_providers {
    aws = {
      source  = "hashicorp/aws"
      version = "~> 5.0"
    }
  }
}

provider "aws" {
  region = "us-east-1"
}

# Aliased provider for multi-region
provider "aws" {
  alias  = "west"
  region = "us-west-2"
}

resource "aws_instance" "west_server" {
  provider = aws.west
  # ...
}

OpenTofu Differences from Terraform

FeatureTerraformOpenTofu
LicenseBSL 1.1MPL 2.0 (open source)
State EncryptionNot supported nativelyBuilt-in AES-GCM with PBKDF2/KMS
Provider for_eachNot supportedSupported since 1.9
.tofu FilesNot recognizedOverride .tf for OpenTofu-specific code
Early EvaluationNot supportedVariables/locals in backends and module sources
Provider MockingNot supportedBuilt-in test mocking since 1.8
Ephemeral ValuesSince 1.10Not yet (tracking Terraform)
Registryregistry.terraform.ioregistry.opentofu.org (mirrors public)
CLI Binaryterraformtofu
Show full SKILL.md (391 more words)Show less
OpenTofu State Encryption Example
hcl
terraform {
  encryption {
    key_provider "pbkdf2" "mykey" {
      passphrase = var.state_passphrase  # Min 16 chars recommended
    }

    method "aes_gcm" "default" {
      keys = key_provider.pbkdf2.mykey
    }

    state {
      method = method.aes_gcm.default
    }

    plan {
      method = method.aes_gcm.default
    }
  }
}

Tooling Ecosystem

tflint - Linter
bash
# Install
brew install tflint

# Initialize plugins
tflint --init

# Run linter
tflint

# Run with specific config
tflint --config .tflint.hcl

# Output as JSON
tflint --format json

Configuration (.tflint.hcl):

hcl
plugin "aws" {
  enabled = true
  version = "0.31.0"
  source  = "github.com/terraform-linters/tflint-ruleset-aws"
}

rule "terraform_naming_convention" {
  enabled = true
}

rule "terraform_unused_declarations" {
  enabled = true
}
Trivy (successor to tfsec) - Security Scanner
bash
# Scan Terraform directory
trivy config .

# Scan with severity filter
trivy config --severity HIGH,CRITICAL .

# Output as JSON
trivy config --format json --output results.json .

# Scan specific file
trivy config main.tf
Infracost - Cost Estimation
bash
# Generate cost breakdown
infracost breakdown --path .

# Compare costs between branches
infracost diff --path . --compare-to infracost-base.json

# Generate JSON for CI/CD
infracost breakdown --path . --format json --out-file infracost.json

# Post cost comment on PR
infracost comment github --path infracost.json --repo org/repo --pull-request 123
terraform-docs - Documentation Generator
bash
# Generate markdown docs from module
terraform-docs markdown table . > README.md

# Generate with config
terraform-docs -c .terraform-docs.yml .

Best Practices

  1. Use remote state with locking for team collaboration
  2. Pin provider and module versions using ~> constraints
  3. Separate environments with directory structure, not workspaces
  4. Never commit .tfvars with secrets - use environment variables or vault
  5. Run terraform plan before every apply and review changes
  6. Use moved blocks for refactoring instead of manual state manipulation
  7. Use import blocks (v1.5+) for declarative resource import
  8. Format and validate in CI with terraform fmt -check and terraform validate
  9. Scan for security issues with tflint and trivy in pre-commit hooks
  10. Use ephemeral values (v1.10+) for secrets that should not be in state

HashiCorp Terraform Skill References

Use these repo-owned adaptations of HashiCorp's active Terraform skills when the task needs more than the CLI and HCL basics above. They are reference material, not permission to bypass this skill's state-safety and confirmation boundaries.

  • Style: Follow the official file layout, naming, ordering, descriptions, and formatting conventions when writing or reviewing modules.
  • Tests: For .tftest.hcl, choose plan-mode unit tests for fast validation, apply-mode integration tests only when the user has authorized real resources, and read the relevant examples in references/hashicorp-terraform-test/ before using mocks or CI patterns.
  • Module refactoring: Identify interfaces and state addresses before moving resources. Prefer moved blocks and a reviewed migration plan over ad-hoc state commands; preserve behavior and document the new module contract.
  • Discovery and import: Check provider support and Terraform version before using Search and bulk import. The local helper script and manual-import notes are in references/hashicorp-search-import/; importing still requires the confirmation required by the CLI boundary above.
  • Policy: Treat policy as a testable contract: validate it in CI, keep exceptions explicit, and never weaken a policy merely to make a plan pass.

The upstream skills are pinned in public-sources.json; review changes manually before updating this SOT.

References

When to Ask for Help

Ask the user for clarification when:

  • The target cloud provider or region is ambiguous
  • State backend configuration details are missing
  • Destructive operations (destroy, state rm, force-unlock) need confirmation
  • Provider credentials or authentication method is unclear
  • Module source or version constraints conflict
  • Multiple workspaces or environments could be affected

© shepherdjerred, GPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 8 other files (references) in packages/dotfiles/dot_agents/skills/terraform-helper of shepherdjerred/monorepo.

  • SKILL.md
  • references/hashicorp-search-import/MANUAL-IMPORT.md
  • references/hashicorp-search-import/list_resources.sh
  • references/hashicorp-terraform-test/CI_CD.md
  • references/hashicorp-terraform-test/EXAMPLES.md
  • references/hashicorp-terraform-test/MOCK_PROVIDERS.md
  • references/hcl-patterns.md
  • references/providers-security.md
  • references/state-modules.md

Open the folder on GitHubat commit bc57ca5

Compare with similar skills

Terraform Helper next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Terraform Helper compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Terraform Helper this skillshepherdjerred/monorepo112—~3.6kAutomated safety check: PassGPL-3.0
Review Docshashicorp/terraform-provider-aws11k—~1.3kAutomated safety check: PassMPL-2.0
Senior DevOps Toolkitmaslennikov-ig/claude-code-orchestrator-kit2606 repos~1.1kAutomated safety check: NotesCustom licence
Terravision Cloud Diagramspatrickchugh/terravision1.6k—~5.6kAutomated safety check: NotesAGPL-3.0-only
Review Helpershashicorp/terraform-provider-aws11k—~978Automated safety check: PassMPL-2.0
Review Identityhashicorp/terraform-provider-aws11k—~692Automated safety check: PassMPL-2.0

Similar skills

  • Review Docs

    hashicorp/terraform-provider-aws

    Official

    Review a Terraform AWS Provider PR's end-user documentation (website/docs//.markdown): whether docs are needed, description openings, argument/attribute style, section structure, tags wording, code…

    11k GitHub stars~1.3k tokensUpdated today
    DevOps & CloudAuto-check passed
  • Senior DevOps Toolkit

    maslennikov-ig/claude-code-orchestrator-kit

    Comprehensive DevOps skill for CI/CD, infrastructure automation, containerization, and cloud platforms (AWS, GCP, Azure). Includes pipeline setup…

    260 GitHub starsUsed in 6 repos~1.1k tokens
    DevOps & CloudAuto-check: notes
  • Terravision Cloud Diagrams

    patrickchugh/terravision

    Draw cloud architecture diagrams for AWS, Azure or GCP with the official provider icon sets, using TerraVision.

    1.6k GitHub stars~5.6k tokensUpdated 3 days ago
    DevOps & CloudAuto-check: notes
  • Review Helpers

    hashicorp/terraform-provider-aws

    Official

    Review Terraform AWS Provider helper code: finders, status functions, waiters, sweepers, data sources, and list resources.

    11k GitHub stars~978 tokensUpdated today
    DevOps & CloudAuto-check passed
  • Review Identity

    hashicorp/terraform-provider-aws

    Official

    Review Terraform AWS Provider Resource Identity: the identity-strategy annotations (@ArnIdentity, @SingletonIdentity, @IdentityAttribute), multi-attribute @ImportIDHandler parsers, and region…

    11k GitHub stars~692 tokensUpdated today
    DevOps & CloudAuto-check passed
  • Terrashark

    LukasNiessen/terrashark

    Prevent Terraform/OpenTofu hallucinations by diagnosing and fixing failure modes: identity churn, secret exposure, blast-radius mistakes, CI drift, and compliance gate gaps.

    715 GitHub stars~843 tokensUpdated 7 days ago
    DevOps & CloudAuto-check passed

More from shepherdjerred/monorepo

All 63 skills in this repo
  • Bun Runtime Best Practices

    shepherdjerred/monorepo

    Bun runtime APIs and current operational patterns for files, processes, modules, networking, databases, tests, and deployment.

    112 GitHub stars~2k tokensUpdated today
    Auto-check passed
  • Bun Test Patterns

    shepherdjerred/monorepo

    Current Bun test runner guidance for discovery, isolation, parallelism, sharding, changed tests, mocks, timers, snapshots, coverage, DOM Testing Library, and integration teardown.

    112 GitHub stars~2k tokensUpdated today
    Auto-check passed
  • Bun Workspaces

    shepherdjerred/monorepo

    Current Bun workspace guidance for isolated and hoisted linkers, catalogs, filters, scripts, dependency classes, lockfiles, lifecycle trust, caches, publishing, TypeScript package exports, and…

    112 GitHub stars~2.2k tokensUpdated today
    Auto-check passed
  • Deep Research

    shepherdjerred/monorepo

    This skill should be used when the user asks to "deep research", "research this topic", "investigate thoroughly", "do a deep dive on", "comprehensive research on", "find everything about", "survey…

    112 GitHub stars~4.7k tokensUpdated today
    Auto-check: notes
  • Figma Use

    shepherdjerred/monorepo

    This skill should be used when the user asks to "create a Figma design", "design in Figma", "make a Figma mockup", "create an app icon", "design UI", "render JSX to Figma", "export from Figma"…

    112 GitHub stars~946 tokensUpdated today
    Auto-check passed
  • Fish Helper

    shepherdjerred/monorepo

    Current Fish shell scripting, functions, abbreviations, completions, variables, events, configuration, plugins, testing, and safety guidance.

    112 GitHub stars~2k tokensUpdated today
    Auto-check passed

Categories

Questions about Terraform Helper

What does Terraform Helper do?

Terraform and OpenTofu infrastructure as code - HCL, providers, modules, state management, and CLI operations When user works with .tf files, mentions Terraform, OpenTofu, tofu, HCL, infrastructure…. Terraform Helper is an agent skill from shepherdjerred/monorepo.

When should I use Terraform Helper?

Terraform Helper fits situations like: works with .tf files; mentions Terraform; infrastructure as code.

How do I install Terraform Helper in Claude Code?

Run `npx skills add shepherdjerred/monorepo --skill terraform-helper -a claude-code`. Or copy the skill folder (packages/dotfiles/dot_agents/skills/terraform-helper in shepherdjerred/monorepo) into .claude/skills/terraform-helper in your project. Claude Code loads it when a task matches its description.

How do I install Terraform Helper in Codex?

Run `npx skills add shepherdjerred/monorepo --skill terraform-helper -a codex`. Or copy the skill folder (packages/dotfiles/dot_agents/skills/terraform-helper in shepherdjerred/monorepo) into .agents/skills/terraform-helper in your project. Codex loads it when a task matches its description.

Can I use Terraform Helper in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add shepherdjerred/monorepo --skill terraform-helper -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/terraform-helper, .gemini/skills/terraform-helper, .github/skills/terraform-helper and .opencode/skills/terraform-helper in your project.

What does Terraform Helper need to run?

Going by SKILL.md and its folder, Terraform Helper needs a shell for the scripts in its folder and the command-line tools its instructions call (terraform, tofu, trivy and brew). Our summary lists: A Bash shell.

Does Terraform Helper access the network?

SKILL.md names 7 domains. As links in the text: github.com, developer.hashicorp.com, opentofu.org, registry.terraform.io, registry.opentofu.org, trivy.dev and infracost.io. This is read from the text; nothing was executed.

Is Terraform Helper safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Terraform Helper use?

Terraform Helper is published under the GPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Terraform Helper use?

About 3.6k tokens (SKILL.md is roughly 15k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 17k tokens, read only when the agent opens those files.

What are the alternatives to Terraform Helper?

Skills that share tags, products or a category with Terraform Helper: Review Docs (hashicorp/terraform-provider-aws, 11k stars), Senior DevOps Toolkit (maslennikov-ig/claude-code-orchestrator-kit, 260 stars), Terravision Cloud Diagrams (patrickchugh/terravision, 1.6k stars) and Review Helpers (hashicorp/terraform-provider-aws, 11k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Terraform Helper?

shepherdjerred (a GitHub user) maintains it in shepherdjerred/monorepo, which has 112 GitHub stars. The repository holds 63 skills in this directory. The repository was last updated on October 9, 2026.

Source: shepherdjerred/monorepo on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.