Configure Grafana alerts for Claude Code anomalies and thresholds. Use when setting up monitoring alerts for sessions, errors, context usage, or subagents.
64
77%
Does it follow best practices?
Run evals on this skill
Adds up to 20 points to the overall score
View guide
Passed
No findings from the security scan
Fix and improve this skill with Tessl
tessl review fix ./skills/observability-alert-manager/SKILL.mdConfigure and manage Grafana alerts for Claude Code monitoring using enhanced telemetry.
Primary: {job="claude_code_enhanced"} in Loki
create-alertDefine new alert rule. Parameters: name, query (LogQL), threshold, duration, severity, notification.
list-alertsShow all configured alerts and their status.
test-alertSimulate alert conditions.
delete-alertRemove alert rule.
Long Session Duration: Session >1 hour
{job="claude_code_enhanced", event_type="session_end"} | json | duration_seconds > 3600High Turn Count: Session >50 turns
{job="claude_code_enhanced", event_type="session_end"} | json | turn_count > 50Session Error Spike: >5 errors in session
{job="claude_code_enhanced", event_type="session_end"} | json | error_count > 5High Error Rate: >5 errors/hour
count_over_time({job="claude_code_enhanced", event_type="tool_result", status="error"} [1h]) > 5Specific Tool Failures: Bash errors
count_over_time({job="claude_code_enhanced", event_type="tool_result", status="error", tool="Bash"} [1h]) > 3High Context Usage: >80% context window
{job="claude_code_enhanced", event_type="context_utilization"} | json | context_percentage > 80Auto Compaction Triggered: Context full
{job="claude_code_enhanced", event_type="context_compact", trigger="auto"}{job="claude_code_enhanced", event_type="session_end"} | json | subagents_spawned > 10Telemetry Staleness: No data >10min
absent_over_time({job="claude_code_enhanced"} [10m])Unusual Activity Spike: >100 tool calls/hour
count_over_time({job="claude_code_enhanced", event_type="tool_call"} [1h]) > 100count_over_time({job="claude_code_enhanced", event_type="user_prompt", pattern="debugging"} [1h]) > 10create-alert \
--name "High Error Rate" \
--query 'count_over_time({job="claude_code_enhanced", event_type="tool_result", status="error"} [1h]) > 5' \
--severity warning \
--notification slackcreate-alert \
--name "High Context Usage" \
--query '{job="claude_code_enhanced", event_type="context_utilization"} | json | context_percentage > 80' \
--severity info \
--notification emailcreate-alert \
--name "Long Session Warning" \
--query '{job="claude_code_enhanced", event_type="session_end"} | json | duration_seconds > 3600' \
--severity info \
--notification dashboardcurl -X POST http://localhost:3000/api/ruler/grafana/api/v1/rules/claude-code \
-H "Content-Type: application/json" \
-u admin:admin \
-d '{
"name": "claude-code-alerts",
"rules": [
{
"alert": "HighErrorRate",
"expr": "count_over_time({job=\"claude_code_enhanced\", status=\"error\"} [1h]) > 5",
"for": "5m",
"labels": {"severity": "warning"},
"annotations": {"summary": "High error rate detected"}
}
]
}'| Level | Use Case |
|---|---|
critical | Immediate action required |
warning | Needs attention soon |
info | Informational, no action needed |
scripts/create-alert.sh - Create new alertscripts/list-alerts.sh - List all alertsscripts/test-alerts.sh - Test alert conditionsscripts/import-alert-templates.sh - Import all pre-built templates93ed392
Also appears in
since Sep 12, 2026
If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.