SkillAgentSearch skills...

doca-upgrade

Use this skill when the user is contemplating a DOCA upgrade or downgrade — moving a host to a newer DOCA release, refreshing the BlueField BFB, bumping the NGC DOCA container tag, or rolling back.

Install / Use

npx skills add NVIDIA/skills --skill doca-upgrade

Installs into whichever agent you are using.

About this skill
📄

SKILL.md

Installable skill definition

Quality Score

86/100

Category

Automation

Supported Platforms

Universal

Tags

Our assessment of doca-upgrade

doca-upgrade scores 86/100 on our quality scale, 1206th of 2,125 Automation skills we index.

Its SKILL.md is 13 KB long, split into 7 sections and no code examples: a thorough specification that gives an agent plenty to work with.

With 3,421 GitHub stars, it is one of the more widely adopted skills in the catalogue.

Substance
30/30
Structure
11/20
Description
15/15
Adoption
15/20
Freshness
15/15

Maintenance, license and trust

  • The repository was last updated 5 days ago, so doca-upgrade is actively maintained.
  • It is released under the Apache-2.0 license, a permissive license that allows use, modification and commercial use with attribution.
  • Its trust signals score 100/100, with no cautions. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.

doca-upgrade compared with similar skills

All 4 of these similar skills score higher than doca-upgrade; compare them before choosing.

SkillScoreStarsUpdatedFormat
doca-upgrade (this skill)by NVIDIA863.4k5d agoSKILL.md
Agent-Reachby Panniantong10086.0k13d agoCLAUDE.md
rufloby ruvnet10073.4ktodayCLAUDE.md
Scraplingby D4Vinci10084.4ktodayMCP Server
algorithmic-artby anthropics100177.9k6d agoSKILL.md

Frequently asked questions

How do I install doca-upgrade?
Run npx skills add NVIDIA/skills --skill doca-upgrade. The install tabs above show the steps for each supported agent.
Which AI agents does doca-upgrade work with?
It is written for Universal, as a SKILL.md file. Other agents that read the same format can often use it too.
Is doca-upgrade safe to use?
It is Apache-2.0-licensed and scores 100/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
Is doca-upgrade still maintained?
The repository was last updated 5 days ago, so doca-upgrade is actively maintained.

license: Apache-2.0 name: doca-upgrade description: > Use this skill when the user is contemplating a DOCA upgrade or downgrade — moving a host to a newer DOCA release, refreshing the BlueField BFB, bumping the NGC DOCA container tag, or rolling back. The discipline is detect → report → ASK → only-then guided upgrade: detect what is installed, discover what newer release exists, report the gap, then STOP and ask for explicit confirmation — never upgrade automatically. Trigger even without the word "upgrade": "is there a newer DOCA", "should I move to the next release", "I want the latest features", "my component is being deprecated, what now", or "roll me back". Route elsewhere for version detection (doca-version), first-time install (doca-setup), any hardware/firmware/reboot step (doca-hardware-safety), and public-docs / sunset routing (doca-public-knowledge-map). metadata: kind: library compatibility: > No DOCA install required to read this skill (it is a cross-cutting overlay loaded against any DOCA artifact skill); the detection, gap-report, and guided-upgrade steps within DO require a live DOCA install at /opt/mellanox/doca, and the hardware / firmware / reboot steps require a BlueField DPU or ConnectX NIC plus out-of-band console reachability as gated by doca-hardware-safety.

DOCA upgrade

Where to start: This skill is the bundle's single source of truth for the discipline that wraps a DOCA upgrade or downgrade. Open TASKS.md when the user wants to do something with an upgrade (detect the gap, ask for confirmation, walk the guided upgrade, verify it, or diagnose a failed one); open CAPABILITIES.md when the question is what does an upgrade even cover (the host apt-upgrade vs BFB reflash vs container-tag bump vs downgrade/rollback modes, the never-auto rule, the confirmation gate, the sunset-awareness concern, the error taxonomy, and the upgrade-specific safety overlay).

For a planned move, the single most important rule this skill exists to enforce is detect → report → ASK → only-then guided upgrade. Never upgrade automatically. The skill detects the installed DOCA env and what newer release is available, reports the gap clearly, then STOPS and asks the user for explicit confirmation. Only on an explicit "yes" does it walk a guided upgrade. A failed or partial move instead enters the recovery ladder without presenting a new target move. In both paths every hardware / firmware / reboot step is delegated to doca-hardware-safety, never redefined here. Version detection itself is owned by doca-version; this skill routes there and does not restate the detection chain.

Example questions this skill answers well

The CLASSES of upgrade questions this skill is built to answer, each with one worked example. The agent should treat the class as the load-bearing piece — the worked example is a single instance.

  • "Is there a newer DOCA than what I have, and how far behind am I?" — worked example: "pkg-config --modversion doca-common says 3.1.0; what's current and what does moving cost me?". Answered by the detect-and-report-the-gap workflow in TASKS.md ## configure, which routes the detection to doca-version and the what is current lookup to doca-public-knowledge-map.
  • "Should I just run apt upgrade to move to the next DOCA release?" — worked example: "I want the newest Flow features; can I upgrade in place right now?". Answered by the never-auto rule and the confirmation gate in CAPABILITIES.md ## Safety policy plus the ask-before-acting step in TASKS.md ## run — the agent reports the gap and STOPS for explicit confirmation before any upgrade command runs.
  • "My upgrade left the host on a different release than the BlueField — what happened?" — worked example: "after the upgrade pkg-config says 3.3.0 but bfver still says 3.1.0". Answered by the host/BFB-skew row in CAPABILITIES.md ## Error taxonomy and the failed-upgrade diagnosis in TASKS.md ## debug, which re-routes the detection to doca-version ## test.
  • "The upgrade aborted half-way and now dpkg is wedged — how do I recover?" — worked example: "apt upgrade was interrupted; dpkg reports an interrupted transaction". Answered by the partial-upgrade and aborted-transaction rows in CAPABILITIES.md ## Error taxonomy plus the recovery ladder in TASKS.md ## debug.
  • "The upgrade needs me to reflash the BFB / flip BlueField mode / reboot — is that safe?" — worked example: "the target release requires a new BFB; can I reflash now?". Answered by routing every hardware / firmware / reboot step to doca-hardware-safety via TASKS.md ## run; this skill never redefines the reflash, mode-flip, or cold-power-cycle discipline.
  • "My installed component is being sunset — should I keep building on it or move?" — worked example: "I rely on DOCA App Shield / the DOCA Flow Inspector service; are they on a deprecation track?". Answered by the sunset / deprecation awareness concern in CAPABILITIES.md ## Capabilities and modes, which routes the user to the public release notes via doca-public-knowledge-map to confirm lifecycle status rather than recommending continued investment in a component that may be sunsetting.

When to load this skill

Load this skill whenever an upgrade or downgrade of DOCA is the load-bearing concern — the user is asking whether a newer release exists, whether to move to it, how to move safely, or how to recover a move that went wrong. The decision must be made before the agent composes its first sentence; the activation checklist below is mirrored here so the activation rule is at hand whenever this skill is consulted. For a planned upgrade or downgrade, it reports the gap and then STOPS for explicit user confirmation. For a failed or partial upgrade, it enters TASKS.md ## debug first to capture and stabilize the current state; it never uses another upgrade command as the first recovery action, retries the move, or issues a new upgrade command without explicit confirmation.

Agent activation checklist — load this skill at the START of the answer when any cell below is true

| Trigger class | Concrete prompt-side signals (any one fires the overlay) | | --- | --- | | Upgrade / downgrade intent | "is there a newer DOCA", "should I move to the next release", "upgrade me to the latest", "roll me back to the previous DOCA", "downgrade to 3.1 for a bug repro" | | Accidental / drifted upgrade | "apt upgrade pulled a newer DOCA point release and broke my build", "my host and BlueField are on different releases now", *"the source channel is latest and I didn't mean to move" * | | Failed / partial upgrade | "the upgrade aborted half-way", "dpkg is wedged after an interrupted transaction", "upgrade finished but the four-way match no longer holds" | | Container tag bump | the user wants to move an NGC DOCA container deployment from one tag to a newer one, or asks whether bumping the tag is an upgrade | | Sunset / deprecation awareness | the user asks whether the component they depend on is deprecated, being sunset, or worth continued investment |

First classify the request. A planned move (including a requested rollback) follows detect → report → ASK. A failed, partial, or accidentally drifted move is already a diagnosis/recovery request: load this skill, capture the current four-source state, and enter TASKS.md ## debug; do not ask for permission to perform an upgrade that has already failed, and do not issue another upgrade command as the first recovery action.

For a planned move, the agent MUST:

  1. Route planned-upgrade version detection to doca-version ## configure. For failed or partial upgrades, start with doca-version ## debug and TASKS.md ## debug. Do NOT restate the four-source detection chain here; this skill consumes the detected state and four-way match status.
  2. Report the gap and STOP for explicit confirmation. Present the installed release, the available target release, and what moving costs (per CAPABILITIES.md ## Version compatibility), then ask the user to confirm. Do NOT proceed to any upgrade command until the user explicitly says yes.
  3. Route every hardware / firmware / reboot step to doca-hardware-safety. This skill names when such a step is part of the upgrade; that skill names how it is applied safely.

For a failed/partial move, the agent MUST instead classify the captured state against CAPABILITIES.md ## Error taxonomy, delegate the single documented corrective action, and re-enter the recovery ladder. Any unsupported installed → target jump fails closed: do not improvise intermediate releases or commands; require an upgrade path explicitly documented by the Compatibility Policy or release notes.

Do not load this skill for first-time install (use doca-setup), for the version-detection chain in isolation (use doca-version), or for general orientation (use doca-public-knowledge-map).

What this skill provides

This is a thin loader. The body keeps only the orientation needed to pick the right next file. The substantive upgrade material lives in two companion files:

  • CAPABILITIES.md — the upgrade surface: the upgrade-mode taxonomy (host apt upgrade vs BFB reflash vs container-tag bump vs downgrade/rollback), the never-auto rule and the confirmation gate, the sunset / deprecation-awareness concern, the version-compatibility overlay that redirects to doca-version, the error taxonomy (partial upgrade, apt-source drift, host/BFB skew, aborted transaction / dpkg interrupted), the observability surface (which commands prove the upgrade did or did not happen), and the upgrade-specific safety overlay on top of doca-hardware-safety.
  • TASKS.md — step-by-step workflows for the in-scope verbs: configure (detect + discover target + apt-source precheck), build and modify (routing stubs — the version-pin change is owned elsewhere), run (the confirmation-gated guided upgrade), test (post-upgrade four-way verification), debug (diagnose a failed / partial upgrade), plus a Deferred task verbs block.

Loading order

  1. Read this SKILL.md first to confirm the user's question is in scope (an upgrade / downgrade is being contemplated or recovered).
  2. For the upgrade-mode taxonomy, the never-auto rule, the sunset-awareness concern, the error taxonomy, observability, and the safety overlay, see CAPABILITIES.md.
  3. For step-by-step workflows — detect-and-report, the confirmation-gated guided upgrade, post-upgrade verification, and failed-upgrade diagnosis — see TASKS.md.

Related skills

  • doca-version — owns the four-source detection chain and the four-way match rule. This skill's detect step routes there and does not redefine version detection; the gap report consumes the detected version.
  • [doca-setup](../

Truncated for display — read the full file on GitHub.

Related Skills

View on GitHub
GitHub Stars3.4k
CategoryAutomation
Updated5d ago
Forks412

Languages

Python

Trust signals

100/100

From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.

No cautions