CtrlK
BlogDocsLog inGet started
Tessl Logo

aws-networking

Routes AWS networking requests to the correct service skill for implementation. Covers Route 53 (DNS, health checks, routing policies, Resolver, DNS Firewall), CloudFront (caching, edge, OAC, mTLS, signed URLs), Transit Gateway (multi-VPC hub, segmentation, centralized egress), Direct Connect (hybrid link, DX Gateway, MACsec), Site-to-Site VPN (IPsec tunnels, static or BGP), WAF (web ACLs, AWS Managed Rules, rate-based rules, Bot and Fraud Control), and Shield Advanced (L3/L4 DDoS). Applicable when creating, configuring, troubleshooting, or designing across these services, choosing between them, or diagnosing connectivity or traffic-filtering issues. Not for VPC subnets and route tables, load balancers, VPC endpoints, PrivateLink, API Gateway, IAM policy logic, container or serverless networking, or IaC authoring.

68

Quality

81%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

The canonical home for this skill is aws-networking in aws/agent-toolkit-for-aws

SKILL.md
Quality
Evals
Security

Quality

Content

75%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A well-structured router skill body that uses compact tables for routing decisions, cross-service disambiguation, and security guidance, with concrete commands and a clear sequenced workflow. Trimming repeated phrases and the run-on step 5 would push conciseness higher.

Suggestions

Tighten step 5 by splitting the long run-on sentence into sub-bullets per routing scenario, reducing token cost and improving scannability.

Consolidate the repeated 'the target skill implements it' disclaimer into a single note under Security Considerations rather than restating it after each table row.

Add an explicit validation checkpoint for the ambiguous-routing branch (e.g., 'if still ambiguous after the clarifying question, state the assumption and proceed') to strengthen workflow_clarity.

DimensionReasoningScore

Conciseness

Dense, table-driven content with no padding of concepts Claude already knows, though the repeated 'the target skill implements it' clauses and the long run-on sentence in step 5 could be trimmed.

4 / 5

Actionability

Provides a concrete routing table with 'Choose when...' criteria, an executable MCP command (aws___retrieve_skill), a file path, and a specific clarifying question; minor gaps remain in edge-case routing.

4 / 5

Workflow Clarity

A clear 7-step numbered sequence with explicit decision branches and a clarifying-question checkpoint; no destructive/batch operations so the cap does not apply, but there is no explicit validate-retry loop.

4 / 5

Progressive Disclosure

Well-organized into headed sections and tables with detail correctly delegated to target skills one level deep (skills/<skill>/SKILL.md); no bundle files exist, and the body is slightly too long for the simple-skill exception to reach 5.

4 / 5

Total

16

/

20

Passed

Description

87%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong, well-scoped router description that clearly states its purpose, covers seven specific AWS networking services with concrete capabilities, gives explicit trigger conditions, and sharply bounds scope with an exclusion list. Minor gains are possible from adding a few user synonyms (e.g., CDN).

DimensionReasoningScore

Specificity

Names the AWS networking domain and concrete routing/diagnostic actions with comprehensive per-service capability coverage (Route 53, CloudFront, Transit Gateway, etc.), but the core verb is a single routing action rather than multiple distinct verbs.

4 / 5

Completeness

Explicitly answers both what (routes to service skills across 7 named services) and when ('Applicable when...') with concrete trigger phrases, plus an explicit out-of-scope list.

5 / 5

Trigger Term Quality

Includes natural trigger phrases ('creating, configuring, troubleshooting, or designing', 'diagnosing connectivity or traffic-filtering issues') and the seven service names users actually say, though a few synonyms like 'CDN' for CloudFront are absent.

4 / 5

Distinctiveness Conflict Risk

Clear niche of seven named services with a detailed 'Not for...' exclusion list (VPC subnets, load balancers, PrivateLink, API Gateway, etc.) that minimizes wrong-skill conflict risk.

5 / 5

Total

18

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
aws/agent-toolkit-for-aws
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.