azure-kusto

azure-kusto is a skill for Claude Code, Codex from jonathan-vella/apex-accelerator. It costs 91 tokens per session (719 once invoked), scanned A, original, MIT.

A guide for querying Azure Data Explorer, also called Kusto or ADX, a service for storing and analyzing large amounts of logs, telemetry, and time-based data. It uses KQL, the query language for this service.

In plain words
What is it for?
Use it to discover databases and table structures, run KQL queries, aggregate results, analyze time series, trace events, detect anomalies, and export or visualize findings.
Why use it?
It helps you inspect large datasets, find trends, connect related events, and investigate unusual patterns without manually reviewing records.

Skill for Claude CodeCodex

Written for no agent in particular: nothing here depends on one.

Good fit Use it to discover databases and table structures, run KQL queries, aggregate results, analyze time series, trace events, detect anomalies, and export or visualize findings.

Compare 6 skills from other repositories ↓
Install with agentmods
npx agentmods add skills/jonathan-vella/apex-accelerator/azure-kusto
Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

Any agent
npx skills add jonathan-vella/apex-accelerator --skill azure-kusto
Clone the repo
git clone --depth 1 https://github.com/jonathan-vella/apex-accelerator

Made for: Claude Code, Codex.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for azure-kusto

README.md
[![agentmods](https://agentmods.dev/badge/skills/jonathan-vella/apex-accelerator/azure-kusto/github.svg)](https://agentmods.dev/skills/jonathan-vella/apex-accelerator/azure-kusto)
Your own site
<a href="https://agentmods.dev/skills/jonathan-vella/apex-accelerator/azure-kusto"><img src="https://agentmods.dev/badge/skills/jonathan-vella/apex-accelerator/azure-kusto/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for azure-kusto

Your own site · 80×15
<a href="https://agentmods.dev/skills/jonathan-vella/apex-accelerator/azure-kusto"><img src="https://agentmods.dev/badge/skills/jonathan-vella/apex-accelerator/azure-kusto.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 91 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 719 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe. Third-party audits
  • NVIDIA SkillSpector pass 7 Sept 2026
How audits are shown
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00091 $0.00719
Opus 5 $0.00046 $0.00360
Sonnet 5 $0.00018 $0.00144
Haiku 4.5 $0.00009 $0.00072

Measured 7d ago against content hash 8b8a2b642bad, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-10, from the pricing page.

Security

Grade A, and why

azure-kusto scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 7d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

.github/skills/azure-kusto/SKILL.md · 72 lines

How it starts

The opening of the file, as written. The whole thing — 72 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Azure Data Explorer (Kusto) Query & Analytics

Execute KQL queries against Azure Data Explorer for fast, scalable big-data analytics on log, telemetry, and time-series data.

Prerequisites

  • Azure CLI authenticated (az login) with a subscription containing Kusto resources
  • RBAC: AllDatabasesViewer on the cluster, or Database Viewer per database
  • Azure MCP server configured in .vscode/mcp.json for the mcp_azure-mcp_kusto namespace; CLI fallback in references/fallback-strategy.md

Steps

  1. Discover resources — list clusters and databases in the subscription
  2. Explore schemakusto_table_schema_get for table structure
  3. Query datakusto_query with a KQL expression
  4. Analyse results — aggregate, visualise, export

Query Patterns Quick Reference

Pattern Use For
Basic Data Retrieval Quick inspection, recent events
Aggregation Analysis Counting, distribution, top-N
Time Series Analytics Performance monitoring, trends
Join and Correlation Root-cause analysis, event tracing
Schema Discovery Data model exploration

For full KQL syntax, examples, best practices, and performance tips, read references/query-patterns.md.

Rules

  • Always include a time-range filter (where Timestamp > ago(...)) on time-series tables
  • Use take/limit for exploratory queries
  • Filter early (where before join / summarize)
  • Use summarize for aggregations; bin() for time bucketing
  • Use project to select only needed columns

MCP Tools

Tool Purpose
kusto_cluster_list List Kusto clusters in a subscription
kusto_database_list List databases in a cluster
kusto_query Execute KQL against a database
kusto_table_schema_get Retrieve table schema

Read the full file on GitHub · 72 lines

Files

What ships with it

2 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 7d ago First seen · 72 lines · 91 tokens per session scan A 8b8a2b642bad

Subscribe to this mod's changes

azure-kusto is a skill published in the GitHub repository jonathan-vella/apex-accelerator (50 stars, last pushed 3d ago), licensed MIT. It adds 91 tokens to every session and 719 once invoked, about $0.0005 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.

Related

Other skills, from other repositories

dashscope

DashScope (Alibaba Cloud Bailian / 阿里云百炼) integration — image generation (qwen-image-2.0-pro), text-to-speech (qwen3-tts-flash), and ASR with word-level timestamps (qwen3-asr-flash-filetrans). Use when generating images via Qwen-Image, narrating via Qwen-TTS, or transcribing with word-level timestamps via Qwen-ASR.

calesthio/OpenMontage · 93 tokens

promptkit

PromptKit composition engine. Use this skill when the user wants to assemble a task-specific prompt, write a requirements doc, investigate a bug, review code, plan an implementation, author agent instructions, create a Copilot prompt file, build an agentic workflow, or perform any engineering task that PromptKit has a…

microsoft/PromptKit · 93 tokens

bootstrap

Alias for the /promptkit skill. Use this when the user wants to assemble a task-specific prompt using PromptKit, or says "bootstrap" to start the PromptKit composition engine.

microsoft/PromptKit · 39 tokens

semantic-model-disambiguation

Analyze Power BI semantic models for column-level overlaps that confuse Copilot and Fabric data agents. Detect ambiguity, review with domain expert, apply fixes via MCP.

fabioc-aloha/Alex_Skill_Mall · 37 tokens

rag-architecture

Build retrieval-augmented generation systems that ground LLMs in your data.

fabioc-aloha/Alex_Skill_Mall · 20 tokens

multi-agent-architect

Design and optimize production-grade multi-agent systems with LangGraph, LangChain, and DeepAgents for complex AI workflows.

fabioc-aloha/Alex_Skill_Mall · 28 tokens