SkillAgentSearch skills...

aks-network-capture

Collects bounded packet captures from AKS nodes and Azure network configuration for wire-level evidence. WHEN: \"capture packets on an AKS node\", \"take a pcap\", \"run tcpdump on AKS\", \"prove where packets drop\".

Install / Use

npx skills add microsoft/skills --skill aks-network-capture

Installs into whichever agent you are using.

About this skill
📄

SKILL.md

Installable skill definition

Quality Score

87/100

Supported Platforms

Universal

Our assessment of aks-network-capture

aks-network-capture scores 87/100 on our quality scale, 2218th of 4,597 Development & Engineering skills we index (top 49%).

Its SKILL.md is 2.9 KB long, split into 7 sections and no code examples: a solid amount of guidance for an agent.

With 3,051 GitHub stars, it is one of the more widely adopted skills in the catalogue.

Substance
26/30
Structure
11/20
Description
15/15
Adoption
15/20
Freshness
15/15

Maintenance, license and trust

  • The repository was last updated 17 days ago, so aks-network-capture is actively maintained.
  • It is released under the MIT license, a permissive license that allows use, modification and commercial use with attribution.
  • Its trust signals score 100/100, with no cautions. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.

aks-network-capture compared with similar skills

All 4 of these similar skills score higher than aks-network-capture; compare them before choosing.

SkillScoreStarsUpdatedFormat
aks-network-capture (this skill)by microsoft873.1k17d agoSKILL.md
ai-job-searchby MadsLorentzen10045.5k2d agoCLAUDE.md
claude-howtoby luongnv8910041.8k10d agoCLAUDE.md
algorithmic-artby anthropics100177.9k18d agoSKILL.md
pptxby anthropics100177.9k18d agoSKILL.md

Frequently asked questions

How do I install aks-network-capture?
Run npx skills add microsoft/skills --skill aks-network-capture. The install tabs above show the steps for each supported agent.
Which AI agents does aks-network-capture work with?
It is written for Universal, as a SKILL.md file. Other agents that read the same format can often use it too.
Is aks-network-capture safe to use?
It is MIT-licensed and scores 100/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
Is aks-network-capture still maintained?
The repository was last updated 17 days ago, so aks-network-capture is actively maintained.

name: aks-network-capture description: "Collects bounded packet captures from AKS nodes and Azure network configuration for wire-level evidence. WHEN: "capture packets on an AKS node", "take a pcap", "run tcpdump on AKS", "prove where packets drop". Use for explicit packet-capture intent after read-only diagnostics, not general AKS connectivity or ingress troubleshooting." license: MIT metadata: author: Microsoft version: "1.0.1"

AKS Network Capture

Quick Reference

| Use | Requires | Safety | | --- | --- | --- | | AKS pcap evidence | kubectl; az for Azure evidence | Bounded, pinned, least privilege |

When to Use This Skill

Use for explicit packet capture after read-only checks, not generic connectivity failures.

MCP Tools

Azure MCP's AKS area provides cluster and node-pool metadata, not Kubernetes command execution or packet capture.

Host Capability Gate

Before executing the workflow, confirm that the host permits the required Bash or PowerShell execution, kubectl access to the bound cluster, az for Azure evidence, access to the bundled scripts, and an approved artifact destination. A governed Azure CLI tool alone does not establish that shell, Kubernetes commands, or artifact operations are supported.

If a required capability is unavailable or prohibited, state that capture execution is unavailable in this host. Analyze supplied, appropriately redacted evidence or give the operator a target-bound collection/capture plan; do not claim to have run it. Never route kubectl through Azure MCP, add an unapproved execution path, or bypass host policy. Host support does not replace the mutation and sensitive-data approvals below.

Run bundled scripts from the skill root only after this gate is satisfied.

Workflow/Steps

  1. Check host capabilities, then complete authorization and target binding. Capture intent is not mutation consent. Stop for separate approval before any debug-container fallback.
  2. Install Bash / PowerShell.
  3. Capture nodes or pods with Bash / PowerShell.
  4. Generate traffic if approved with Bash / PowerShell.
  5. Retrieve the exact run with Bash / PowerShell.
  6. Gather Azure evidence with Bash / PowerShell.

The ConfigMap runs run-capture.sh inside its pinned Linux image.

Error Handling

| Error | Action | | --- | --- | | Invalid input | Correct it before retrying. | | Missing/stale ConfigMap | Run setup again. | | Capture/retrieval failure | Inspect Job logs; missing evidence is not success. |

Related Skills

View on GitHub
GitHub Stars3.1k
CategoryDevelopment
Updated17d ago
Forks349

Languages

TypeScript

Trust signals

100/100

From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.

No cautions