Claude-skill-registry aws-cloud-ops

AWS cloud operations for CloudWatch, S3, Lambda, EC2, and IAM

install
source · Clone the upstream repo
git clone https://github.com/majiayu000/claude-skill-registry
Claude Code · Install into ~/.claude/skills/
T=$(mktemp -d) && git clone --depth=1 https://github.com/majiayu000/claude-skill-registry "$T" && mkdir -p ~/.claude/skills && cp -r "$T/skills/data/aws-cloud-ops" ~/.claude/skills/majiayu000-claude-skill-registry-aws-cloud-ops && rm -rf "$T"
manifest: skills/data/aws-cloud-ops/SKILL.md
source content

AWS Cloud Operations Skill

Overview

Provides 90%+ context savings vs raw AWS MCP server. Multi-service support with progressive disclosure by service category.

Requirements

  • AWS CLI v2
  • Configured credentials (AWS_PROFILE or ~/.aws/credentials)
  • AWS_REGION environment variable

Tools (Progressive Disclosure)

CloudWatch Operations

ToolDescriptionConfirmation
logs-groupsList log groupsNo
logs-tailTail log streamNo
logs-filterFilter log eventsNo
metrics-listList metricsNo
metrics-getGet metric dataNo
alarm-listList alarmsNo
alarm-createCreate alarmYes

S3 Operations

ToolDescriptionConfirmation
s3-lsList buckets/objectsNo
s3-cpCopy objectsYes
s3-syncSync directoriesYes
s3-rmDelete objectsYes

Lambda Operations

ToolDescriptionConfirmation
lambda-listList functionsNo
lambda-getGet function detailsNo
lambda-invokeInvoke functionYes
lambda-logsGet function logsNo

EC2 Operations

ToolDescriptionConfirmation
ec2-listList instancesNo
ec2-describeDescribe instanceNo
ec2-startStart instanceYes
ec2-stopStop instanceYes
sg-listList security groupsNo

IAM Operations (Read-Only)

ToolDescriptionConfirmation
iam-usersList usersNo
iam-rolesList rolesNo
iam-policiesList policiesNo

Quick Reference

# List EC2 instances
aws ec2 describe-instances --output table

# Tail CloudWatch logs
aws logs tail /aws/lambda/my-function --follow

# List S3 buckets
aws s3 ls

# Invoke Lambda
aws lambda invoke --function-name my-func output.json

Configuration

  • AWS_PROFILE: Named profile to use
  • AWS_REGION: Target region (e.g., us-east-1)
  • AWS_DEFAULT_OUTPUT: Output format (json/table/text)

Security

⚠️ Never hardcode credentials ⚠️ Use IAM roles when possible ⚠️ IAM write operations are blocked

Agent Integration

  • devops (primary): Cloud operations
  • cloud-integrator (primary): Multi-cloud
  • incident-responder (secondary): Troubleshooting

Troubleshooting

IssueSolution
Access deniedCheck IAM permissions
Region errorSet AWS_REGION
CredentialsRun aws configure

Memory Protocol (MANDATORY)

Before starting: Read

.claude/context/memory/learnings.md

After completing:

  • New pattern ->
    .claude/context/memory/learnings.md
  • Issue found ->
    .claude/context/memory/issues.md
  • Decision made ->
    .claude/context/memory/decisions.md

ASSUME INTERRUPTION: If it's not in memory, it didn't happen.