- Home
- Skills
- DevOps & Cloud
- Enterprise Cloud Cost Optimization & Architecture Compliance
Works with the AI tools you already use
Enterprise Cloud Cost Optimization & Architecture Compliance
This skill acts as a pre-emptive cost-control and compliance checkpoint for multi-cloud and Kubernetes environments.
$5
Enterprise Cloud Cost Optimization & Architecture Compliance
Example session with this skill installed
Run a FinOps audit on this Terraform snippet for our new HealthTech patient intake pipeline in our Dev environment:
resource "aws_s3_bucket" "patient_records" {
bucket = "healthtech-patient-intake-records-dev"
}
resource "aws_ebs_volume" "app_storage" {
availability_zone = "us-east-1a"
size = 500
type = "gp2"
}
resource "aws_instance" "pipeline_processor" {
ami = "ami-0c55b159cbfafe1f0"
instance_type = "m5.2xlarge"
tags = {
Name = "healthtech-intake-processor-dev"
}
}
- Read your context and instructions
- Compiled the enterprise cloud cost
- Generated the document
Here's the FinOps audit for the patient intake pipeline (Dev environment, HealthTech context detected via "patient" keyword — HIPAA/PHI safeguards applied).
Findings Summary
| # | Resource | Issue | Impact |
|---|---|---|---|
| 1 | aws_s3_bucket.patient_records | No FinOps tags (Owner/CostCenter/Environment) | High |
| 2 | aws_s3_bucket.patient_records | No lifecycle policy — HealthTech safeguard requires Deep Archive transition for patient records >365 days | High |
| 3 | aws_ebs_volume.app_storage | Legacy gp2 volume type (500GB) — should be gp3 | Medium |
| 4 | aws_ebs_volume.app_storage | No FinOps tags | High |
| 5 | aws_instance.pipeline_processor | m5.2xlarge in Dev violates Non-Prod Restriction (burstable tiers only) | High |
| 6 | aws_instance.pipeline_processor | Missing CostCenter/Owner tags and Schedule: OffHours tag for nightly shutdown | High |
Remediation Diffs
1 & 2 — S3 bucket: tags + lifecycle policy
resource "aws_s3_bucket" "patient_records" {
bucket = "healthtech-patient-intake-records-dev"
+ tags = {
+ Owner = "TBD"
+ CostCenter = "TBD"
+ Environment = "dev"
+ }
}
+
+resource "aws_s3_bucket_lifecycle_configuration" "patient_records" {
+ bucket = aws_s3_bucket.patient_records.id
+
+ rule {
+ id = "healthtech-deep-archive-transition"
+ status = "Enabled"
+
+ transition {
+ days = 90
+ storage_class = "STANDARD_IA"
+ }
+
+ transition {
+ days = 365
+ storage_class = "DEEP_ARCHIVE"
+ }
+ }
+}
3 & 4 — EBS volume: gp3 + tags
resource "aws_ebs_volume" "app_storage" {
availability_zone = "us-east-1a"
size = 500
- type = "gp2"
+ type = "gp3"
+ tags = {
+ Owner = "TBD"
+ CostCenter = "TBD"
+ Environment = "dev"
+ }
}
5 & 6 — EC2 instance: right-size + tags + off-hours schedule
resource "aws_instance" "pipeline_processor" {
ami = "ami-0c55b159cbfafe1f0"
- instance_type = "m5.2xlarge"
+ instance_type = "t3.xlarge"
tags = {
- Name = "healthtech-intake-processor-dev"
+ Name = "healthtech-intake-processor-dev"
+ Owner = "TBD"
+ CostCenter = "TBD"
+ Environment = "dev"
+ Schedule = "OffHours"
}
}
Notes & Open Questions
Instance right-sizing: I defaulted m5.2xlarge → t3.xlarge (burstable, similar vCPU/RAM) since this is Dev. I don't have Datadog/CloudWatch utilization data — if this pipeline has sustained CPU-intensive workloads even in Dev, confirm before downsizing further, or a burst-credit-exhaustion issue could actually cost more in throttled reprocessing time.
TBDtag values: fill in actualOwner/CostCentervalues — I can't infer your org's cost-allocation taxonomy.- Dollar estimates skipped per policy (no pricing CLI active) — impact is graded qualitatively above.
Want me to write these corrected files to your workspace?
enterprise-cloud-cost-optimization-archi.pdf
PDF · document
Example file from a real run - the skill writes it into your workspace.
Connects securely to your tools. The creator never sees your data.
What you get
About this skill
This skill acts as a pre-emptive cost-control and compliance checkpoint for multi-cloud and Kubernetes environments. By scanning IaC (Terraform, Bicep) or K8s manifests, it identifies orphaned infrastructure, uncapped compute limits, and storage waste while automatically prescribing exact code diffs to patch the violations. It prevents developers from deploying unoptimized cloud resources while maintaining strict industry-specific compliance requirements.
How to install
Works the same in every agent - Claude, Cursor, Codex, Copilot and 20+ more.
- 1
Download the ZIP
Free skills download straight away. Paid skills unlock right after purchase.
- 2
Unzip into your skills folder
Every agent reads skills from one folder on your machine. Drop the unzipped folder in there.
- 3
Ask your agent to use it
Restart the agent if it was already running. It picks the skill up automatically - no config needed.
Skills folder by agent
Click the path to copy it. Create the folder if it does not exist yet.
Reviews
No reviews yet
Be one of the first to try it. Every listed skill passes our trust checks below.
Security scanned
Passed our 8-point scan before listing
Fresh listing
Recently published to Agensi
30-day refund
Not a fit? Get your money back
Trust & safety
Security scanned
Verified clean 21 days ago
- Passed all security checks, Safe to install