[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"org-elastic":3,"repo-skills-v-0-3-0":232},{"org":4,"repos":57},{"slug":5,"name":6,"logoUrl":7,"githubOrg":5,"website":8,"skillCount":9,"repoCount":10,"topRepos":11,"topTags":27,"lastUpdatedAt":56},"elastic","Elastic","https:\u002F\u002Fpexgzepcugksgbtrxkhf.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Forg-logos\u002Felastic.png","https:\u002F\u002Fwww.elastic.co",86,9,[12,15,18,21,24],{"name":13,"skillCount":14},"elastic\u002Fagent-skills",35,{"name":16,"skillCount":17},"elastic\u002Felastic-docs-skills",18,{"name":19,"skillCount":20},"elastic\u002Fintegration-skills",14,{"name":22,"skillCount":23},"elastic\u002Fexample-mcp-app-observability",6,{"name":25,"skillCount":26},"elastic\u002Fexample-mcp-app-security",5,[28,29,32,35,38,41,44,47,50,53],{"slug":5,"name":6},{"slug":30,"name":31},"elasticsearch","Elasticsearch",{"slug":33,"name":34},"observability","Observability",{"slug":36,"name":37},"documentation","Documentation",{"slug":39,"name":40},"kibana","Kibana",{"slug":42,"name":43},"security","Security",{"slug":45,"name":46},"technical-writing","Technical Writing",{"slug":48,"name":49},"monitoring","Monitoring",{"slug":51,"name":52},"integrations","Integrations",{"slug":54,"name":55},"dashboards","Dashboards","2026-07-18T05:13:04.420121",[58,76,99,116,136,160,180,202,218],{"name":59,"fullName":13,"repoUrl":60,"skillCount":14,"stars":61,"forks":62,"description":63,"topics":64,"topTags":65,"topTagCount":74,"lastUpdatedAt":75},"agent-skills","https:\u002F\u002Fgithub.com\u002Felastic\u002Fagent-skills",531,41,"Official Elastic Skills",[],[66,67,68,69,70,71],{"slug":5,"name":6},{"slug":30,"name":31},{"slug":39,"name":40},{"slug":33,"name":34},{"slug":42,"name":43},{"slug":72,"name":73},"opentelemetry","OpenTelemetry",45,"2026-07-12T07:49:33.582904",{"name":77,"fullName":16,"repoUrl":78,"skillCount":17,"stars":79,"forks":10,"description":80,"topics":81,"topTags":84,"topTagCount":97,"lastUpdatedAt":98},"elastic-docs-skills","https:\u002F\u002Fgithub.com\u002Felastic\u002Felastic-docs-skills",71,"Instructions for code agents on how to author Elastic docs",[82,5,83],"docs","skills",[85,86,87,88,91,94],{"slug":36,"name":37},{"slug":5,"name":6},{"slug":45,"name":46},{"slug":89,"name":90},"audit","Audit",{"slug":92,"name":93},"github","GitHub",{"slug":95,"name":96},"seo","SEO",12,"2026-07-12T07:50:44.050021",{"name":100,"fullName":19,"repoUrl":101,"skillCount":20,"stars":102,"forks":103,"description":104,"topics":105,"topTags":106,"topTagCount":115,"lastUpdatedAt":56},"integration-skills","https:\u002F\u002Fgithub.com\u002Felastic\u002Fintegration-skills",11,2,null,[],[107,108,109,110,111,114],{"slug":5,"name":6},{"slug":51,"name":52},{"slug":30,"name":31},{"slug":54,"name":55},{"slug":112,"name":113},"data-engineering","Data Engineering",{"slug":39,"name":40},31,{"name":117,"fullName":22,"repoUrl":118,"skillCount":23,"stars":119,"forks":120,"description":104,"topics":121,"topTags":122,"topTagCount":102,"lastUpdatedAt":135},"example-mcp-app-observability","https:\u002F\u002Fgithub.com\u002Felastic\u002Fexample-mcp-app-observability",10,7,[],[123,124,125,126,129,132],{"slug":5,"name":6},{"slug":33,"name":34},{"slug":48,"name":49},{"slug":127,"name":128},"apm","APM",{"slug":130,"name":131},"alerting","Alerting",{"slug":133,"name":134},"anomaly-detection","Anomaly Detection","2026-07-12T07:49:28.114697",{"name":137,"fullName":25,"repoUrl":138,"skillCount":26,"stars":17,"forks":119,"description":139,"topics":140,"topTags":147,"topTagCount":158,"lastUpdatedAt":159},"example-mcp-app-security","https:\u002F\u002Fgithub.com\u002Felastic\u002Fexample-mcp-app-security","Reference MCP App for Elastic Security — interactive SOC dashboards inside Claude, Cursor, and other MCP hosts.",[141,142,143,5,144,145,42,146],"ai","claude","cursor","mcp","model-context-protocol","soc",[148,149,150,153,154,155],{"slug":42,"name":43},{"slug":5,"name":6},{"slug":151,"name":152},"triage","Triage",{"slug":48,"name":49},{"slug":54,"name":55},{"slug":156,"name":157},"incident-response","Incident Response",8,"2026-07-12T07:48:29.539756",{"name":161,"fullName":162,"repoUrl":163,"skillCount":164,"stars":165,"forks":166,"description":104,"topics":167,"topTags":168,"topTagCount":120,"lastUpdatedAt":179},"elastic-ramen","elastic\u002Felastic-ramen","https:\u002F\u002Fgithub.com\u002Felastic\u002Felastic-ramen",3,16,4,[],[169,170,173,174,175,178],{"slug":5,"name":6},{"slug":171,"name":172},"debugging","Debugging",{"slug":39,"name":40},{"slug":33,"name":34},{"slug":176,"name":177},"cli","CLI",{"slug":30,"name":31},"2026-07-12T07:49:44.954024",{"name":181,"fullName":182,"repoUrl":183,"skillCount":164,"stars":184,"forks":185,"description":186,"topics":187,"topTags":188,"topTagCount":10,"lastUpdatedAt":201},"rally","elastic\u002Frally","https:\u002F\u002Fgithub.com\u002Felastic\u002Frally",2027,339,"Macrobenchmarking framework for Elasticsearch",[30],[189,190,193,196,199,200],{"slug":5,"name":6},{"slug":191,"name":192},"performance","Performance",{"slug":194,"name":195},"analytics","Analytics",{"slug":197,"name":198},"data-analysis","Data Analysis",{"slug":171,"name":172},{"slug":30,"name":31},"2026-07-12T07:46:38.54144",{"name":203,"fullName":204,"repoUrl":205,"skillCount":206,"stars":206,"forks":207,"description":208,"topics":209,"topTags":210,"topTagCount":103,"lastUpdatedAt":217},"clients-team-automations","elastic\u002Fclients-team-automations","https:\u002F\u002Fgithub.com\u002Felastic\u002Fclients-team-automations",1,0,"Contains shared reusable GitHub Actions workflows of the clients team.",[],[211,214],{"slug":212,"name":213},"engineering","Engineering",{"slug":215,"name":216},"qa","QA","2026-07-12T07:50:52.684493",{"name":219,"fullName":220,"repoUrl":221,"skillCount":206,"stars":222,"forks":23,"description":223,"topics":224,"topTags":225,"topTagCount":26,"lastUpdatedAt":231},"esdiag","elastic\u002Fesdiag","https:\u002F\u002Fgithub.com\u002Felastic\u002Fesdiag",28,"Elastic Stack Diagnostics",[],[226,227,228,229,230],{"slug":171,"name":172},{"slug":5,"name":6},{"slug":30,"name":31},{"slug":33,"name":34},{"slug":191,"name":192},"2026-07-12T07:50:27.992499",{"items":233,"total":26},[234,246,255,266,277],{"slug":235,"name":235,"fn":236,"description":237,"org":238,"tags":239,"stars":17,"repoUrl":138,"updatedAt":245},"alert-triage","triage Elastic Security alerts","Triage Elastic Security alerts — fetch, investigate, classify threats, create cases, and acknowledge. Use when triaging alerts, performing SOC analysis, investigating detections, reviewing security incidents, or when the user mentions ransomware, malware, lateral movement, credential theft, DLL injection, suspicious processes, or any specific threat. Also trigger for \"show me alerts\", \"what's happening on host X\", \"any critical alerts\", or any security operations question.\n",{"slug":5,"name":6,"logoUrl":7,"githubOrg":5},[240,242,243,244],{"name":6,"slug":5,"type":241},"tag",{"name":49,"slug":48,"type":241},{"name":43,"slug":42,"type":241},{"name":152,"slug":151,"type":241},"2026-07-12T07:48:26.972827",{"slug":247,"name":247,"fn":248,"description":249,"org":250,"tags":251,"stars":17,"repoUrl":138,"updatedAt":159},"attack-discovery-triage","triage Elastic Security attack findings","Triage Elastic Security Attack Discovery findings — fetch correlated attack narratives, assess confidence with entity risk and rule frequency signals, and present an interactive triage dashboard for approval, case creation, and acknowledgment. Use when triaging attack discoveries, reviewing correlated attacks, assessing EASE output, or when the user mentions \"attack discovery\", \"AD findings\", \"triage attacks\", \"correlated alerts\", or asks to process attack discovery results. Also trigger for \"what attacks were discovered\", \"triage my discoveries\", or \"any attack discoveries\".\n",{"slug":5,"name":6,"logoUrl":7,"githubOrg":5},[252,253,254],{"name":34,"slug":33,"type":241},{"name":43,"slug":42,"type":241},{"name":152,"slug":151,"type":241},{"slug":256,"name":256,"fn":257,"description":258,"org":259,"tags":260,"stars":17,"repoUrl":138,"updatedAt":265},"case-management","manage Elastic Security SOC cases","Create, search, update, and manage SOC cases for Elastic Security. ALWAYS use this skill when the user mentions cases, incidents, investigations, or asks to see, show, list, open, create, update, or search cases. Trigger for: \"show me my cases\", \"open cases\", \"list cases\", \"any open cases\", \"create a case\", \"case for this alert\", \"show me case 42\", \"incident tracking\", \"investigation status\", or any case-related question.\n",{"slug":5,"name":6,"logoUrl":7,"githubOrg":5},[261,262,263,264],{"name":6,"slug":5,"type":241},{"name":157,"slug":156,"type":241},{"name":43,"slug":42,"type":241},{"name":152,"slug":151,"type":241},"2026-07-12T07:48:24.262486",{"slug":267,"name":267,"fn":268,"description":269,"org":270,"tags":271,"stars":17,"repoUrl":138,"updatedAt":276},"detection-rule-management","manage Elastic Security detection rules","Create, tune, and manage Elastic Security detection rules. Use for false positive tuning, adding exceptions, creating new detection coverage, finding noisy rules, enabling\u002Fdisabling rules, or any detection engineering task. Also trigger for \"detection rules\", \"noisy rules\", \"false positives\", \"add exception\", \"create rule\", or \"tune rule\".\n",{"slug":5,"name":6,"logoUrl":7,"githubOrg":5},[272,273,274,275],{"name":6,"slug":5,"type":241},{"name":49,"slug":48,"type":241},{"name":43,"slug":42,"type":241},{"name":152,"slug":151,"type":241},"2026-07-12T07:48:28.211728",{"slug":278,"name":278,"fn":279,"description":280,"org":281,"tags":282,"stars":17,"repoUrl":138,"updatedAt":289},"generate-sample-data","generate sample Elastic Security data","Generate sample security events, attack scenarios, and synthetic alerts for Elastic Security. Use when demoing, populating dashboards, testing detection rules, setting up a POC, or when the user asks for test data, demo data, or sample alerts.\n",{"slug":5,"name":6,"logoUrl":7,"githubOrg":5},[283,284,285,286],{"name":55,"slug":54,"type":241},{"name":6,"slug":5,"type":241},{"name":43,"slug":42,"type":241},{"name":287,"slug":288,"type":241},"Testing","testing","2026-07-12T07:48:25.510646"]