Topic · DevOps & Cloud
Best cloud networking skills for Claude Code, Codex and other agents.
- skills
- 230
- official
- 37
Cloud networking skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Syntax reference for KFL2, the CEL-based display filter language used to search Kubernetes network traffic captured by Kubeshark, loaded before any filter is written. | kubeshark/ | 12k | — | ~3.6k | Automated safety check: Pass | Apache-2.0 | 6 days ago |
| 2 | Migrate from ingress-nginx to Higress in Kubernetes environments. | higress-group/ | 9.5k | — | ~3.9k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 3 | 3.Rust Rust coding best practices for idiomatic, efficient, and maintainable code. | pgdogdev/ | 5.6k | — | ~1.9k | Automated safety check: Notes | AGPL-3.0 | today |
| 4 | 引导用户在 bfe 代码库中完成一次完整的功能研发流程,包括需求对齐、文档修改、代码实现、集成测试与回归验证. An agent skill from bfenetworks/bfe. | bfenetworks/ | 6.3k | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 5 | Gives step-by-step checklists for adding Ingress annotations, VirtualServer fields and Helm values to the NGINX Kubernetes Ingress Controller, with common gotchas. | nginx/ | 5.1k | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | today |
| 6 | Step-by-step checklist for adding a new Policy CRD type to the NGINX Ingress Controller, from the Go types and validation to config generation and templates. | nginx/ | 5.1k | — | ~2k | Automated safety check: Pass | Apache-2.0 | today |
| 7 | Diagnoses why a Brigade companion app can't pair or connect, by first identifying the real node-to-gateway route and then fixing auth. | spinabot/ | 11k | — | ~1.2k | Automated safety check: Pass | MIT | 4 days ago |
| 8 | Drives ArvanCloud's REST APIs for CDN, DNS, cloud servers, object storage and more, with helper scripts for calls, account inventory and certificates. | erfnzdeh/ | 135 | — | ~3.9k | Automated safety check: Pass | MIT | 9 days ago |
| 9 | This skill should be used when the user asks to "change the dev stack", "add a runtime service", "change the launcher", "update Docker", "bump Agent Server", "change ingress routing", or changes… | OpenHands/ | 90k | — | ~375 | Automated safety check: Pass | MIT | today |
| 10 | Operates the ccproxy inspector MITM system for intercepting, inspecting, and transforming LLM API traffic. | starbaser/ | 348 | — | ~2.7k | Automated safety check: Pass | Unknown | 1 mo ago |
| 11 | Intrinsic Core gRPC service selection, Envoy x-resource-instance-name routing, and progressive disclosure hub across ObjectWorldService, MotionPlannerService, ICON, cameras, KVStore, and platform… | intrinsic-ai/ | 552 | — | ~3.4k | Automated safety check: Pass | Apache-2.0 | today |
| 12 | A skill your agent uses when managing Alibaba Cloud Simple Application Server (SWAS OpenAPI 2020-06-01) resources end-to-end, including querying instances, starting/stopping/rebooting, executing… | cinience/ | 397 | 1 repo | ~1.9k | Automated safety check: Pass | MIT | 1 mo ago |
| 13 | 13.Unifly This skill should be used when the user asks to "manage UniFi devices", "configure UniFi networks", "create a VLAN", "provision an SSID", "create firewall rules", "reorder firewall policies"… | hyperb1iss/ | 263 | — | ~7k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 14 | Detect dangling DNS records and subdomain-takeover risks across a multi-cloud environment by running the bundled findmytakeover tool. | anirudhbiyani/ | 180 | — | ~1.8k | Automated safety check: Pass | GPL-3.0 | 1 mo ago |
| 15 | Meta-level debugging workflows, architectural layer isolation, and progressive disclosure routing across Envoy ingress, Kubernetes pods, Behavior Trees, ObjectWorld synchronization, ICON real-time… | intrinsic-ai/ | 552 | — | ~3.8k | Automated safety check: Notes | Apache-2.0 | today |
| 16 | 16.Unifi Manage UniFi network infrastructure via the UniFi MCP Server. | enuno/ | 281 | — | ~1k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 17 | Set up and verify a new Draw Things CPU proxy and Envoy server using the scripts in Scripts/ServerManagement/CPUScript. | drawthingsai/ | 579 | — | ~3.8k | Automated safety check: Pass | GPL-3.0 | today |
| 18 | 构建并发布 NullPrivate 镜像到阿里云容器镜像服务,更新 k3s 工作负载并完成 rollout、镜像 digest、Pod、Service、Gateway/Ingress、HTTPS 与 DNS/DoH 验收。Use when: 推送 dev 镜像、发布 NullPrivate、更新 public3 Pod、部署 adguardprivate、回滚 public3、检查… | NullPrivate/ | 111 | — | ~2k | Automated safety check: Pass | GPL-3.0 | 1 mo ago |
| 19 | Deploy and operate workloads on Azure Kubernetes Service (AKS) the safe way. | timothywarner/ | 143 | — | ~916 | Automated safety check: Pass | Unknown | 18 days ago |
| 20 | Installs, uninstalls, checks and troubleshoots the KubeSphere Gateway extension built on ingress-nginx, including gateways stuck in bad states and Helm or pod failures. | kubesphere/ | 17k | — | ~2.9k | Automated safety check: Pass | Unknown | 2 mo ago |
| 21 | Guide for configuring, deploying, and operating the MonsterMQ broker. | vogler75/ | 142 | — | ~2.2k | Automated safety check: Pass | GPL-3.0 | yesterday |
| 22 | Clones a live WordPress (or other CMS-driven) site into a static HTML site deployable on any static host (Cloudflare Pages, Netlify, Vercel, S3+CloudFront, plain Apache/nginx). | jdevalk/ | 104 | — | ~2.6k | Automated safety check: Pass | MIT | 3 mo ago |
| 23 | Operates the KubeSphere network extension with kubectl, covering install, configuration, Calico IP pools and network isolation policies. | kubesphere/ | 17k | — | ~2.3k | Automated safety check: Pass | Unknown | 2 mo ago |
| 24 | Analyze Terraform plan JSON output for AzureRM Provider to distinguish between false-positive diffs (order-only changes in Set-type attributes) and actual resource changes. | github/ | 40k | 1 repo | ~547 | Automated safety check: Pass | MIT | today |
| 25 | 25.Moe Training Train Mixture of Experts (MoE) models using DeepSpeed or HuggingFace. | Orchestra-Research/ | 13k | 3 repos | ~3.7k | Automated safety check: Pass | MIT | 3 mo ago |
| 26 | Configure secure, high-performance connectivity between on-premises infrastructure and cloud platforms using VPN and dedicated connections. | wshobson/ | 40k | 10 repos | ~1.5k | Automated safety check: Pass | MIT | 2 days ago |
| 27 | Analyze production Node.js app container response times to find slow-rendering sites, cross-checking against nginx queuing delay to rule out false positives (a site only looks slow because the event… | blotcms/ | 2k | — | ~1.9k | Automated safety check: Pass | AGPL-3.0 | today |
| 28 | Intrinsic Core zero-cloud architecture, core primitives (Assets, Services, Skills, Solutions, ICON), CLI inspection commands, and workspace search rules. | intrinsic-ai/ | 552 | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | today |
| 29 | Walks through mutual TLS between services in a zero-trust setup: certificate hierarchy, rotation, a gradual PERMISSIVE-to-STRICT rollout and handshake debugging. | wshobson/ | 40k | 8 repos | ~588 | Automated safety check: Pass | MIT | 2 days ago |
| 30 | Apply CIS benchmarks and secure Linux servers. An agent skill from BagelHole/DevOps-Security-Agent-Skills. | BagelHole/ | 1.1k | — | ~662 | Automated safety check: Notes | MIT | 4 mo ago |
| 31 | Add a custom domain to a Temps project and provision an automatic SSL/TLS certificate via Let's Encrypt, driven entirely from the @temps-sdk/cli CLI. | gotempsh/ | 822 | — | ~988 | Automated safety check: Pass | Apache-2.0 | today |
| 32 | 32.Dotnet API Builds ASP.NET Core APIs, EF Core data access, gRPC, SignalR, and backend services with middleware, security (OAuth, JWT, OWASP), resilience, messaging, OpenAPI, .NET Aspire, Semantic Kernel… | novotnyllc/ | 233 | — | ~1.6k | Automated safety check: Pass | MIT | 1 mo ago |
| 33 | Analyze log files to troubleshoot errors, identify peak error periods, and produce error clustering, frequency statistics, and time distribution reports. | zebbern/ | 4.6k | — | ~923 | Automated safety check: Pass | MIT | today |
| 34 | Systematic troubleshooting for the PEEKS workshop platform — EKS clusters, Terraform state, ingress, load balancers, MCP tool failures, YAML validation. | aws-samples/ | 113 | — | ~2k | Automated safety check: Pass | MIT-0 | today |
| 35 | Configure Istio traffic management including routing, load balancing, circuit breakers, and canary deployments. | wshobson/ | 40k | 8 repos | ~1.7k | Automated safety check: Pass | MIT | 2 days ago |
| 36 | Intrinsic Core microservice authoring, ServiceManifest definitions (realspec vs simspec), RuntimeContext port bindings (gRPC port 1 vs HTTP port 7), SIGTERM lifecycle handling, and .binpb sideloading. | intrinsic-ai/ | 552 | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | today |
| 37 | Investigate OpenMMO production warnings, errors, suspicious behavior, and unresolved incidents within a deployment interval; correlate journald, nginx, and targeted evidence, then write a dated note… | Julian-adv/ | 1.8k | — | ~1.3k | Automated safety check: Pass | Unknown | 2 days ago |
| 38 | Authors and maintains the human-facing Agentic Workflows API documentation for the lungo subproject at coffeeAGNTCY/coffeeagents/lungo/docs/workflow-instanceapi.md. | agntcy/ | 112 | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 39 | Enforces Circuit Breaker security hardening conventions across backend, frontend, Docker, and nginx. | BlkLeg/ | 201 | — | ~2.1k | Automated safety check: Pass | MIT | 2 days ago |
| 40 | 40.Dt Obs AWS AWS cloud resource monitoring including EC2, RDS, Lambda, ECS/EKS, VPC networking, load balancers, S3, DynamoDB, SQS/SNS, and cost optimization. | Dynatrace/ | 161 | — | ~4.2k | Automated safety check: Pass | Apache-2.0 | 6 days ago |
| 41 | Deploys Cisco ACI policy changes only behind an approved ServiceNow Change Request, capturing pre and post-change fault baselines and rolling back automatically on a fault delta. | automateyournetwork/ | 674 | — | ~4.2k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 42 | Kubernetes workload patterns, resource management, RBAC, probes, autoscaling, ConfigMap/Secret handling, and kubectl debugging for production-grade deployments. | timothywarner-org/ | 224 | — | ~4.5k | Automated safety check: Pass | MIT | 2 mo ago |
| 43 | Redis security guidance covering authentication (requirepass and ACL users), TLS, ACL-based least-privilege access control, restricting network exposure via bind and protected-mode, firewall rules… | redis/ | 165 | 1 repo | ~918 | Automated safety check: Pass | MIT | 29 days ago |
| 44 | Hunt HTTP request smuggling (CL.TE, TE.CL, H2.CL, H2.TE). An agent skill from elementalsouls/Claude-BugHunter. | elementalsouls/ | 4.8k | — | ~1.8k | Automated safety check: Pass | MIT | yesterday |
| 45 | Starts, stops, and inspects ngrok, Cloudflare, or custom tunnel connections from the command line, including auth and reachability. | diegosouzapw/ | 74k | — | ~339 | Automated safety check: Pass | MIT | today |
| 46 | Runs a phased health audit of a Cisco ACI fabric through MCP tools: node status, links, tenant and policy review, faults and endpoint learning. | automateyournetwork/ | 674 | — | ~2.9k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 47 | Manages the Traefik-based Kubernetes Gateway API extension in KubeSphere: install, uninstall, status checks, GatewayProxy inspection and troubleshooting. | kubesphere/ | 17k | — | ~3.7k | Automated safety check: Pass | Unknown | 2 mo ago |
| 48 | This skill should be used when user asks to "deploy to Hetzner", "create Hetzner server", "manage Hetzner Cloud", "hcloud CLI", or works with Hetzner Cloud infrastructure including servers… | fcakyon/ | 1.2k | — | ~2k | Automated safety check: Warn | MIT | yesterday |
Questions, answered from the data.
What is the best cloud networking skill?
Kubeshark KFL2 Filter Reference from kubeshark/kubeshark ranks first of the 230 cloud networking skills listed here, with the highest score: its repository has 12k GitHub stars, its SKILL.md loads about 3.6k tokens and it passes the automated safety check with no findings. Next come Nginx To Higress Migration and Rust.
Which cloud networking skills are official?
37 of the 230 cloud networking skills are official, published by the vendor's own GitHub organization: Terraform Azurerm Set Diff Analyzer, Troubleshoot Platform, Redis Security, Azure Resource Manager SQL Dotnet, Azure Resource Manager Mysql Dotnet and 32 more.
How are these skills ranked?
By Skill Navigator score, which combines the GitHub stars of the skill's repository (shared across that repo's skills and discounted for large collections), how many other GitHub owners carry a copy of the skill, and automated SKILL.md quality checks, minus penalties for safety-check warnings and for each further skill from the same repository. Skills that fail the safety check are not listed.
Explore related skills
Category
More topics in DevOps & Cloud
- Deployment1,152
- CI/CD921
- Containers723
- Observability562
- Container orchestration519
- Infrastructure as code351
- Monitoring and alerting333
- Secrets management318
- Runbooks and postmortems277
- Incident response271
- Backup and disaster recovery170
- Site reliability engineering150
- Cloud architecture114
- MLOps101
- Cloud cost optimization93
- GitOps87
- Linux administration75
- Platform engineering51
- Chaos engineering28