本文へ移動
cccskills
無料GitHub で公開

volcengine-tls

Use when operating Volcengine TLS (日志服务) through volclog in agent or CI sessions and you need a contract-first workflow for runtime selector resolution, discover/describe/exec routing, App resource or Topic resolution, envelope reading, large-result delivery, and error recovery without guessing commands, fields, or shortcut flows. 当用户提到火山引擎日志服务 TLS、volclog、日志检索/分析/导入/导出、 日志项目或日志主题等操作时调用。

インストール方法を見る

含まれるファイル(4)

  • SKILL.md10.0 KB
  • references/best-practices.md13.5 KB
  • references/routing.md3.5 KB
  • references/sops.md4.3 KB

SKILL.md(原文)

インストールする前に、エージェントに与えられる指示の中身を確認できます。

Volcengine TLS (volclog)

Adapted from volclog-core in volcengine-tls/ve-tls-cli (Apache-2.0). Command examples keep the upstream native volclog ... form; run them as ve volclog ... (requires ve >= 1.1.11) with all later arguments unchanged.

Overview

Use this skill only for agent-only incremental knowledge.

Treat this file as the dominant generic operating model for volclog, not as an environment-specific bootstrap note and not as an API reference. This file is the behavior summary; references are the authoritative detail. If volclog tool describe ... or volclog workflow describe ... already answers the question, stop and follow that contract instead of adding duplicate guidance here.

Operating Stance

  • Treat tool describe or workflow describe as the contract truth source. Read tool describe or workflow describe first.
  • Treat profile configuration as a runtime-selector problem, not a region-discovery ritual.
  • Think in runtime selectors: active profile, explicit --profile <name>, one-shot --secrets-file, context.secrets_file, or process-scoped environment credentials.
  • Use tool for published public APIs, workflow for CLI-owned orchestration, and raw only when method/path is already known.
  • Keep one-call App, LogApp, Trace, and TraceScore capabilities on tool; use workflow app.resolve-resources or app.resolve-topic-ids only for CLI-owned cross-call expansion.
  • Prefer structured JSON input such as --input '{...}' when tool exec or workflow exec already supports it.

Runtime Selector Model

  • Treat the execution environment as unknown until the available runtime selectors are confirmed.
  • Do not assume the active or default profile is the right selector for the task.
  • Run volclog configure list only when local profile discovery is actually relevant.
  • Use region only when the contract or task explicitly requires an override. Do not infer it from endpoint or domain.
  • --profile/context.profile and --secrets-file/context.secrets_file are runtime selectors, not business input fields.
  • Never read, print, export, or persist AK/SK or token values in prompts, memory, request artifacts, or skill content.

Canonical Agent Loop

Discover -> Describe -> Exec -> Read Result

  1. Resolve runtime selectors.
    • decide whether this run is using profile, secrets file, or environment credentials
    • if local profile discovery matters, run volclog configure list
    • keep the chosen selector explicit in the command or context
  2. Discover the callable surface.
    • volclog tool list
    • volclog tool list <group>
    • volclog workflow list <group>
  3. Read the contract.
    • volclog tool describe <group.action>
    • use volclog tool describe <group.action> --view full when authoring a nested request or when compact output omits an expected optional field
    • treat compact view as the discovery summary and full view as the request-authoring contract
    • volclog workflow describe <group.command>
  4. Execute with structured input.
    • volclog tool exec <group.action> --input '{...}'
    • volclog workflow exec <group.command> --input '{...}'
    • volclog raw --method <METHOD> --path <PATH> --body '{...}'
  5. Read result in this order.
    • status ("success" or "failed")
    • summary.deliveryMode
    • the flat error object (when status is "failed")
    • business fields under data (when status is "success")

Reference Escalation

  • Do not read every reference file by default.
  • Read tool describe or workflow describe first.
  • Read references/routing.md only when the surface is still unclear after describe or list.
  • Read references/sops.md only when the task clearly spans multiple calls and you need stop conditions.
  • Read references/best-practices.md only when runtime semantics, delivery mode, or recovery posture are still unclear after the contract is known.
  • contract_cache_hint and contract_digest come from tool describe or workflow describe output. Read contract_cache_hint.safe_scope and contract_cache_hint.refresh_when, and reuse cached results only while the same CLI build still reports the same contract_digest.
  • Stop after one reference resolves the current uncertainty; do not keep browsing all references “just in case”.

Key Rules

  • Do not guess command names, tool ids, workflow ids, JSON fields, or output shape.
  • If the action id is still unknown, run volclog tool list <group> or volclog workflow list <group> before guessing.
  • Let the operation's risk, recovery, and usage_constraints override the generic recovery map below.
  • Treat high-risk-retry as a warning that retrying is high risk. After an ambiguous result, reconcile only through a get/describe/list action named by the contract; otherwise stop and escalate instead of retrying automatically.
  • Do not use human shortcut commands as the primary agent flow.
  • Do not repeat schema details that already exist in tool describe or workflow describe.
  • Do not rebuild a valid tool exec or workflow exec request into flag-heavy shortcut form just because the shell path looks shorter.
  • Do not pipe volclog output into jq or grep just to rediscover schema or field paths.
  • Read the full JSON envelope first; use --jmes-filter only when you already know the envelope path you want.
  • Prefer --dry-run before any write or destructive change, but only on raw, tool exec, or workflow exec.
  • Treat --dry-run as contract or plan validation, not proof that the business query is correct.
  • If fields are uniquely named, prefer flat JSON input before manual nesting.

Error Recovery Quick Map

Use this table as the default first response after a failed envelope only after reading the operation's risk, recovery, and usage_constraints. The operation contract takes precedence. Read references/best-practices.md only when you need runtime-specific detail beyond the quick action below.

SignalNext action
error.kind=validationGo back to describe and fix shape or selector problems first.
error.kind=auth or 401Re-check runtime selector, then credentials, then endpoint or region override.
403 ForbiddenRe-check tenant or profile alignment before widening the permission search.
error.kind=usageRe-run tool list or workflow list; do not invent aliases.
error.kind=unsupported_featureRead error.hint, then remove the unsupported flag or switch to the named surface; non-LogApp Topic resolution should switch to app.resolve-resources.
error.kind=incompatible_flagsRemove one conflicting flag and rerun.
error.kind=filesystemFix --output-dir, local path, or permissions before retrying.
error.kind=decodeRead error.hint, remove the wrong filter or projection if present, then rerun unfiltered or with --trace-dir.
error.kind=serverRead error.code and error.requestId; retry with backoff only when the operation contract permits it and the failure is clearly transient.
error.kind=configRun volclog doctor for host-side configuration checks, then inspect the reported runtime issue.
error.kind=unknownRead error.hint first, then error.message or error.details, and rerun with --dry-run or --trace-dir only if more detail is still needed.
ResultStatus=incompleteNarrow the time window and rerun before trusting counts or emptiness.

volclog doctor checks host/runtime configuration such as credentials, endpoint, and local setup. It does not replace describe, and it does not validate business query semantics.

Large Result Handling

  • Keep surface choice and delivery choice separate.
  • When a result may be large, provide a writable --output-dir.
  • Let summary.deliveryMode tell you what actually happened at runtime.
  • Read references/best-practices.md for exact outputMode, deliveryMode, file delivery, and --jmes-filter semantics instead of duplicating them here.

Quick Map

NeedPrefer
Public API contract already chosenvolclog tool describe <group.action> / volclog tool exec <group.action>
CLI workflow already chosenvolclog workflow describe <group.command> / volclog workflow exec <group.command>
Need to discover action or workflow idsvolclog tool list <group> / volclog workflow list <group>
Need help choosing the surfaceread references/routing.md
Need multi-step execution orderread references/sops.md
Resolve an App resource graphvolclog workflow describe app.resolve-resources / volclog workflow exec app.resolve-resources
Resolve Topic IDs for a LogApp Appvolclog workflow describe app.resolve-topic-ids / volclog workflow exec app.resolve-topic-ids
Need runtime/error/recovery semanticsread references/best-practices.md
Use an exact method/pathvolclog raw --method ... --path ...
Authenticate a stateless runhost-selected local profile -> one-shot --secrets-file or context.secrets_file
Need contract reuse safetyreuse cached results only while the same CLI build still reports the same contract_digest

レビュー

まだレビューはありません。使ってみた感想をお寄せください。

同じリポジトリのスキル

概要と使いどころ

Query and answer questions about Volcengine API specifications. Use when the user asks about API parameters, error codes, request methods, enum values, required fields, response structures, pagination, parameter dependencies, service capability lists, API availability, or API comparisons, even if they do not explicitly say "API". Typical intent includes checking what an action supports, which fields are required, what values a parameter accepts, why an API returns a specific error, how to pass nested or body parameters, how pagination works, what an API response contains, whether a batch operation exists, what services or versions expose an operation, or how two APIs differ. Use API Explorer data as the authoritative source and preserve constraints, examples, and caveats found in the spec. Answer in Chinese or English. When the user needs runnable SDK code, language-specific examples, or SDK configuration, hand off to volcengine-sdk-generator. When they need CLI operations, hand off to volcengine-cli.

日本語の概要は準備中です。原文の説明を表示しています。

volcengine/volcengine-skills212026年9月23日 更新

Create and manage Volcengine cloud resources using the Volcengine CLI (`ve` command). Supports all Volcengine services including ECS, VPC, CLB, RDS, Redis, and more. Trigger this skill whenever the user asks to create, query, modify, or delete cloud resources on Volcengine, mentions the `ve` command, says "volcengine CLI", or describes infrastructure tasks such as "create an ECS instance", "set up a VPC", "list security groups", "allocate an EIP". Also trigger on Chinese prompts mentioning "火山引擎" or "火山" (e.g., "火山引擎上有哪些 ECS"、"查一下我火山的云服务器"、 "火山引擎创建一个 VPC"、"火山的 Redis 实例列一下"). Also trigger when the user encounters errors from `ve` commands and needs troubleshooting help. Also use for TOS bucket/object operations, tosutil (sometimes written tosutils), Ark CLI / arkcli model discovery, inference, generation, endpoints, fine-tuning, plans, or usage, and TLS (日志服务) / volclog log search, analysis, ingest, export, or LogCollector collection, through `ve tosutil`, `ve arkcli` and `ve volclog`.

日本語の概要は準備中です。原文の説明を表示しています。

volcengine/volcengine-skills212026年9月23日 更新

Use when the user asks to query Volcengine CloudTrail audit logs, investigate login or resource operations, or manage CloudTrail trails and backfill delivery tasks. Trigger on 操作审计, 审计日志, CloudTrail, cloud_trail, trail, 跟踪, 历史补投, or backfill in a Volcengine context. Audit queries are read-only; trail and backfill mutations require an explicit preview and confirmation.

日本語の概要は準備中です。原文の説明を表示しています。

volcengine/volcengine-skills212026年9月23日 更新

火山引擎合规最佳实践助手:一是根据用户诉求(要满足的合规标准、关键词、关注的风险等级), 从火山引擎官方内置的合规包模板里推荐该开启哪些、并标出哪些已开启;二是汇总账号当前的合规 态势,把已生效规则/合规包(官方内置 + 用户自定义)的评估结果按类别(法规 / 最佳实践 / 自定义)与严重度聚合成一份合规总览报告;三是当官方基线没覆盖时,指导用户写一条 Rego 策略 作为自定义合规规则并注册评估。可在用户确认后把推荐的模板部署为合规包。Use when 用户想做「合规检查 / 合规巡检 / 安全合规 / 合规最佳实践 / 该开哪些合规规则 / 等保合规 / 我火山账号合规吗 / 有哪些不合规 / 帮我写条自定义合规规则」,或提到火山引擎「配置审计 / Config / 合规包 / conformance pack / Rego 策略」。Trigger on 火山 / 火山引擎 / volcengine 关键词叠加合规场景。部署合规包 / 注册自定义规则属写操作,需用户确认;合规报告 与资源修复严格分离。

日本語の概要は準備中です。原文の説明を表示しています。

volcengine/volcengine-skills212026年9月23日 更新

Manage Volcengine's AI-native BaaS platform (Supabase edition / AIDAP / 火山引擎 AI 原生 BaaS 平台 Supabase 版) — a Volcengine-operated distribution that differs from official Supabase. Use when the user asks to create, inspect, or manage Volcengine Supabase or AIDAP resources — workspaces, branches, computes, SQL queries, schema changes, Auth, Realtime, Edge Functions, Storage buckets, frontend static-site hosting (Pages), API keys, connection info, or TypeScript type generation — or when a Volcengine deployment selects AIDAP as its database provider. Also trigger on Chinese prompts mentioning "火山引擎 Supabase" or "火山 Supabase". Operations run through the byted-supabase-cli command-line tool (installed via `npm i -g @byted-supabase/cli`; this is NOT the official `supabase` CLI). Do NOT use it for general database discussions, non-Supabase services (RDS MySQL, Redis), or pure client-side coding unrelated to Supabase backend management.

日本語の概要は準備中です。原文の説明を表示しています。

volcengine/volcengine-skills212026年9月23日 更新

Deploy a local project directory or Git repository to Volcengine as a running, reachable cloud service. USE WHEN: deploy to Volcengine, deploy to 火山引擎/火山, deploy this repo/project, publish current code, launch the app, run it in the cloud, expose it as a service, deploy to ECS/VKE/veFaaS, run on ECS, push to VKE, deploy as serverless/FaaS, or the user wants the agent to choose a Volcengine hosting target. If the user only asks which Volcengine deployment target to choose, use `volcengine-prepare` skill first. Not for creating a single standalone resource — use `volcengine-cli` skill for that.

日本語の概要は準備中です。原文の説明を表示しています。

volcengine/volcengine-skills212026年9月23日 更新

volcengine のスキルをすべて見る

このスキルの問題を報告する