Claude Cursor GitHub Copilot Skill

contabo-maestro

Router skill for classifying Contabo tasks and delegating to the narrowest specialist for cost analysis, capacity planning, security hardening, VPS/VDS lifecycle operations, or Object Storage management. Use when the user asks a Contabo question that spans multiple domains or nee

LLM Mart · 0 points · 0 views 0 listing impressions 0 install-command copies
Virus-scanned Reviewed automatically before listing.

Full trust report

Download vincentchuwaichow-vanguard-frontier-agentic-skills_contabo_contabo-maestro-febe32a.zip · 5 KB
Part of vincentchuwaichow/vanguard-frontier-agentic — 293 skills

Install

skills CLI npx skills add https://github.com/VincentChuWaiChow/vanguard-frontier-agentic/tree/master/skills/contabo/contabo-maestro
Claude Code claude plugin marketplace add https://llmmart.ai/marketplace.json && claude plugin install vincentchuwaichow-vanguard-frontier-agentic@llmmart
Git git clone https://github.com/VincentChuWaiChow/vanguard-frontier-agentic.git

The skills CLI installs just this skill, for any of its supported agents. Claude Code installs the whole vincentchuwaichow/vanguard-frontier-agentic collection as a plugin from our marketplace. Git is the plain clone.

Skill manifest

Contabo Maestro

Purpose

Act as the Contabo routing layer: classify the incoming request, identify the correct specialist domain, and hand off with a scoped context statement. Do not answer specialist questions directly.

When to use

Use this skill for:

  • Triage of ambiguous Contabo requests that touch multiple domains
  • Routing between cost analysis, capacity planning, security hardening, VPS/VDS lifecycle, and Object Storage operations
  • Determining whether a task requires a read-only advisor or an approval-gated live-guard

Lean operating rules

  • Contabo has no official Terraform provider or SDK — recommend cntb CLI or REST API (curl + jq) for automation.
  • Prefer official Contabo docs (https://api.contabo.com/, https://docs.contabo.com/) and Context7 for grounding when live MCP access is unavailable.
  • Separate confirmed facts from inference. If state was not queried or shown, say so.
  • OAuth2 password grant tokens expire in ~5 minutes; never cache or log them. Credentials must stay in environment variables.
  • Demand explicit contract period acknowledgment (1, 3, 6, or 12 months) before routing any lifecycle or billing-impact action.
  • Include x-request-id (UUIDv4) in all API call examples for support traceability.
  • Load references only when needed; do not pull all deep guidance into short answers.

Routing domains

Domain Specialist
Contract period analysis, VPS sizing, addon utilization contabo-cost-optimization-analyst
Resource planning, region coverage, instance sizing contabo-capacity-planner
SSH key management, default user policy, firewall posture contabo-security-hardening
VPS/VDS create, reinstall, cancel contabo-live-instance-lifecycle-guard
Object Storage, bucket operations, retention audit contabo-live-storage-operations-guard

Response minimum

Return, at minimum:

  • the classified domain and evidence level,
  • the recommended specialist and scope statement,
  • any blockers or ambiguities that prevent clean routing,
  • the assumptions or open questions that the specialist should resolve.

References

Load these only when needed:

  • Workflow and output contract — use when executing the full triage, routing a multi-domain request, or formatting the routing decision output.
  • Safety checklist — use before routing any request that touches a live mutation, billing obligation, or production impact.
  • Official sources — use when grounding Contabo service behavior or checking the source list.
Files (vanguard-frontier-agentic)
  • references
    • official-sources.md 1 KB
      # Official sources
      
      Use this reference only when grounding Contabo service behavior or verifying the source list for routing decisions.
      
      ## Contabo documentation
      
      Use these as starting points, not as proof of the user's live Contabo account state:
      
      - https://api.contabo.com/ — Contabo OpenAPI reference (all endpoints)
      - https://docs.contabo.com/ — Contabo user documentation and guides
      - https://github.com/contabo/cntb — cntb CLI tool (source, releases, usage)
      - https://api.contabo.com/#tag/Instances — Instance operations API
      - https://api.contabo.com/#tag/Object-Storages — Object Storage API
      
      ## Grounding rule
      
      Official Contabo documentation describes platform behavior, available products, and API contracts. It does not prove the user's current instance inventory, contract state, billing posture, region availability at the time of the request, or active OAuth2 token validity. Prefer user-provided sanitized evidence or live API responses for current-state claims. Label any claim sourced only from documentation as `documentation-based`.
      
    • safety-checklist.md 1.8 KB
      # Safety checklist
      
      Use this reference before routing any request that touches a live mutation, billing obligation, or production impact.
      
      ## Non-negotiables
      
      - Never ask users to paste OAuth2 tokens, client secrets, API passwords, SSH private keys, S3 secret keys, or any account credentials into chat.
      - Do not invent instance IDs, product IDs, region availability, pricing, or billing terms. Label any claim that has not been confirmed by live evidence or official documentation.
      - Refuse to route a request to an advisory skill when the request clearly requires a live-guard (VPS/VDS mutation or bucket deletion).
      - Demand explicit contract period acknowledgment before routing any request that creates a new billing obligation.
      - Never treat a vague approval ("go ahead," "do it," "looks fine") as sufficient sign-off for a lifecycle or storage mutation routing — escalate to the live-guard for formal confirmation.
      - Separate confirmed routing from inferred routing. If the user's intent is ambiguous, ask one clarifying question rather than assuming the narrower domain.
      
      ## Stress checks
      
      - Does any part of this request create, reinstall, or cancel a VPS or VDS? → Live-guard required.
      - Does any part of this request delete, overwrite, or migrate Object Storage buckets or objects? → Live-guard required.
      - Does any part of this request commit a new contract period? → Explicit billing acknowledgment required before routing.
      - Is the stated billing obligation (period × price) accurate or is it an inference? → Label accordingly.
      - Is the user's evidence level sufficient to route confidently, or is additional evidence needed first?
      
      ## Evidence labels
      
      Use `live evidence`, `user-provided sanitized evidence`, `documentation-based`, or `inference`. Routing decisions made on inference alone must be flagged as provisional.
      
    • workflow-and-output.md 2.2 KB
      # Workflow and output contract
      
      Use this reference only when performing full triage, routing an ambiguous multi-domain request, or generating a handoff context statement for a specialist.
      
      ## Review domains
      
      Check these areas before classifying a request:
      
      - Scope: is this a read-only advisory, a live mutation, or a billing-impacting change?
      - Affected domain(s): cost/billing, capacity, security, instance lifecycle, Object Storage
      - Live-guard requirement: does the request touch VPS/VDS create/reinstall/cancel or Object Storage deletion?
      - Contract period exposure: does any part of the request bind a new 1/3/6/12-month obligation?
      - Evidence level: is the user's current state known from live evidence, user-provided data, or inference?
      
      ## Safe workflow
      
      1. **Frame scope**
         - Request type (advisory, planning, mutation):
         - Contabo account state available (live evidence vs. user description):
         - Domain(s) implicated:
         - Contract period or billing obligation involved:
         - Explicit non-goals:
      2. **Classify the request**
         - Map against the routing domain table in the SKILL.md.
         - If multiple domains are implicated, list them and resolve priority (billing/lifecycle safety first).
         - If the request is ambiguous, ask one clarifying question before routing.
      3. **Check live-guard threshold**
         - If the request may create, reinstall, or cancel a VPS/VDS → route to `contabo-live-instance-lifecycle-guard`.
         - If the request may delete buckets or objects → route to `contabo-live-storage-operations-guard`.
         - Do not route live-guard requests to advisory skills.
      4. **Produce the handoff**
         - State the classified domain, evidence level, recommended specialist, and scope statement.
         - Include any blockers, assumptions, or open questions the specialist must resolve.
      
      ## Output contract
      
      Return this structure:
      
      ```markdown
      # Contabo Maestro: Routing Decision
      ## Classification
      - Domain(s): <list>
      - Request type: advisory | planning | live mutation
      - Evidence level: live | user-provided | inference
      ## Specialist recommendation
      - Skill: <skill-name>
      - Scope statement: <one sentence describing the bounded task>
      ## Blockers or ambiguities
      - <item or none>
      ## Open questions for specialist
      - <question or none>
      ```
      
  • metadata.json 1.1 KB
    {
      "id": "contabo-maestro",
      "name": "Contabo Maestro",
      "type": "skill",
      "provider": "contabo",
      "harnesses": [
        "codex",
        "claude-code",
        "cursor",
        "gemini",
        "kiro",
        "other"
      ],
      "summary": "Router skill for classifying Contabo tasks and delegating to the narrowest specialist for cost analysis, capacity planning, security hardening, VPS/VDS lifecycle, or Object Storage operations.",
      "source_type": "original",
      "official_docs": [
        "https://api.contabo.com/",
        "https://docs.contabo.com/"
      ],
      "security_notes": "OAuth2 password grant tokens expire in ~5 minutes — never cache or log them. Credentials must remain in environment variables. The x-request-id UUIDv4 header is mandatory for support traceability. Contabo has no official Terraform provider or SDK; recommend cntb CLI or REST API. Contractual periods (1, 3, 6, 12 months) create billing obligations — never route lifecycle changes without explicit period acknowledgment.",
      "last_verified": "2026-05-10",
      "path": "skills/contabo/contabo-maestro",
      "author": "github: VincentChuWaiChow",
      "version": "0.1.0"
    }
    
  • SKILL.md 3.1 KB
    ---
    name: contabo-maestro
    description: Router skill for classifying Contabo tasks and delegating to the narrowest specialist for cost analysis, capacity planning, security hardening, VPS/VDS lifecycle operations, or Object Storage management. Use when the user asks a Contabo question that spans multiple domains or needs triage before specialist engagement.
    allowed-tools: Read Grep Glob
    metadata:
      author: "github: VincentChuWaiChow"
      version: "0.1.0"
      updated: "2026-05-10"
      category: platform
    ---
    
    # Contabo Maestro
    
    ## Purpose
    
    Act as the Contabo routing layer: classify the incoming request, identify the correct specialist domain, and hand off with a scoped context statement. Do not answer specialist questions directly.
    
    ## When to use
    
    Use this skill for:
    
    - Triage of ambiguous Contabo requests that touch multiple domains
    - Routing between cost analysis, capacity planning, security hardening, VPS/VDS lifecycle, and Object Storage operations
    - Determining whether a task requires a read-only advisor or an approval-gated live-guard
    
    ## Lean operating rules
    
    - Contabo has no official Terraform provider or SDK — recommend `cntb` CLI or REST API (curl + jq) for automation.
    - Prefer official Contabo docs (https://api.contabo.com/, https://docs.contabo.com/) and Context7 for grounding when live MCP access is unavailable.
    - Separate confirmed facts from inference. If state was not queried or shown, say so.
    - OAuth2 password grant tokens expire in ~5 minutes; never cache or log them. Credentials must stay in environment variables.
    - Demand explicit contract period acknowledgment (1, 3, 6, or 12 months) before routing any lifecycle or billing-impact action.
    - Include `x-request-id` (UUIDv4) in all API call examples for support traceability.
    - Load references only when needed; do not pull all deep guidance into short answers.
    
    ## Routing domains
    
    | Domain | Specialist |
    |---|---|
    | Contract period analysis, VPS sizing, addon utilization | `contabo-cost-optimization-analyst` |
    | Resource planning, region coverage, instance sizing | `contabo-capacity-planner` |
    | SSH key management, default user policy, firewall posture | `contabo-security-hardening` |
    | VPS/VDS create, reinstall, cancel | `contabo-live-instance-lifecycle-guard` |
    | Object Storage, bucket operations, retention audit | `contabo-live-storage-operations-guard` |
    
    ## Response minimum
    
    Return, at minimum:
    
    - the classified domain and evidence level,
    - the recommended specialist and scope statement,
    - any blockers or ambiguities that prevent clean routing,
    - the assumptions or open questions that the specialist should resolve.
    
    ## References
    
    Load these only when needed:
    
    - [Workflow and output contract](references/workflow-and-output.md) — use when executing the full triage, routing a multi-domain request, or formatting the routing decision output.
    - [Safety checklist](references/safety-checklist.md) — use before routing any request that touches a live mutation, billing obligation, or production impact.
    - [Official sources](references/official-sources.md) — use when grounding Contabo service behavior or checking the source list.
    

Comments (0)

Sign in to join the conversation.

No comments yet.

Reviews (0)

No reviews yet.

Related