Install
$ agentstack add skill-makigjuro-cloudstack-ai-plugins-infra-apply ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
Infrastructure Apply
Generate a Terraform plan for review. Optionally apply after user confirmation.
Arguments
{environment}— Target environment (e.g.,dev,staging,prod). Default:dev{module}— Specific module to plan (e.g.,aks-cluster,postgresql). If omitted, plan all.--apply— Apply after showing the plan (requires explicit user confirmation)
Configuration
Read cloudstack.json from the project root at the start of execution. Extract:
TF_PATH=infrastructure.terraformPath(default:infra/terraform/modules)TG_PATH=infrastructure.terragruntPath(default:infra/terragrunt)IAC_WRAPPER=infrastructure.iacWrapper(default:none)
If cloudstack.json does not exist, auto-detect by scanning the project structure.
Process
Step 1: Validate First
Run /infra-lint terraform to ensure all modules are valid before planning.
Step 2: Generate Plan
If IAC_WRAPPER = terragrunt:
Single module:
cd {TG_PATH}/{environment}/{module}
terragrunt plan -out=tfplan
All modules:
cd {TG_PATH}/{environment}
terragrunt run --all plan
If IAC_WRAPPER = none (plain Terraform):
Single module:
cd {TF_PATH}/{module}
terraform plan -var="environment={environment}" -out=tfplan
All modules — iterate over each module directory:
for dir in {TF_PATH}/*/; do
echo "=== Planning $(basename $dir) ==="
terraform -chdir="$dir" plan -var="environment={environment}" -out=tfplan
done
Note: With plain Terraform, you may need to pass additional -var-file or -backend-config flags depending on the project setup. Check for {environment}.tfvars files.
Step 3: Review Plan Output
Display the plan summary:
- Resources to add
- Resources to change
- Resources to destroy
CRITICAL: If any resources will be destroyed, highlight this prominently and require explicit user confirmation before proceeding.
Step 4: Apply (only if --apply and user confirms)
If IAC_WRAPPER = terragrunt:
Single module:
cd {TG_PATH}/{environment}/{module}
terragrunt apply tfplan
All modules:
cd {TG_PATH}/{environment}
terragrunt run --all apply
If IAC_WRAPPER = none:
Single module:
cd {TF_PATH}/{module}
terraform apply tfplan
All modules:
for dir in {TF_PATH}/*/; do
terraform -chdir="$dir" apply tfplan
done
Safety Rules
- NEVER apply to
prodwithout showing the plan first and getting explicit user confirmation - ALWAYS run plan before apply
- If the plan shows unexpected destroys, STOP and ask the user
- Clean up plan files after apply:
rm -f tfplan - For
--alloperations with Terragrunt, respect the dependency order defined in configs
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: makigjuro
- Source: makigjuro/cloudstack-ai-plugins
- License: MIT
- Homepage: https://github.com/makigjuro/cloudstack-ai-plugins#quick-start
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.