ProfessorGPTProfessorGPT
Datadog Labs
Datadog LabsDatadog Labs· v1.0.0
codingOfficial
Official Provider SkillView repo

Verify and enrich a local Datadog Code Security finding with Datadog platform context. Use when the user asks whether a local finding exists in Datadog, or wants its triage or exposure status.

Files2 files
SKILL.md180 lines
Loading editor…

Install

Recommended

One command — your agent picks it up automatically.

Select an AI agent above to see the install command.

or

Manual Install

More steps

Download the archive and add the files to your project manually.

Skill details

Versionv1.0.0
AuthorDatadog Labs
Categorycoding
Skill IDdatadog-labs/datadog-code-security-mcp/skills/dd-codesec-verify-findings
Files2 files

Related skills

Dd Codesec Scan And FixScan and remediate local code-security findings with Datadog. Use when the user explicitly asks to scan or fix code, when a Datadog finding link identifies local code to verify, or after finishing a task that changed source, IaC, or dependency files to offer one optional changed-file scan.Dd Codesec Setup ToolchainInstall, update, and diagnose the Datadog Code Security toolchain: the datadog-code-security-mcp wrapper CLI itself and its scanner binaries (datadog-static-analyzer, datadog-sbom-generator, datadog-iac-scanner, datadog-security-cli). Use whenever the user asks whether datadog-code-security-mcp or any scanner is installed, up to date, outdated, or on the latest version, asks which version is running, asks to install or upgrade any of them, or when a Datadog scan reports a missing binary.Agent InstallInstall the Datadog Agent on Linux hosts via SSH with Single Step Instrumentation (SSI) enabled — SSI automatically instruments applications for APM without code changes. Only use if no agent is installed yet.Agent Observability Eval BootstrapBootstrap evaluators from production traces — by default propose online LLM-judge evaluators and, after you confirm, create them in Datadog as disabled drafts (never auto-enabled); on request emit Python SDK code or a framework-agnostic JSON spec instead. Use when user says "bootstrap evaluators", "generate evaluators", "create evals from traces", "eval bootstrap", "write evaluators", "build eval suite", "publish evaluators", or wants to generate BaseEvaluator/LLMJudge code or online judge confiDatadog AppGuides developers building Datadog Apps with TypeScript, React, the @datadog/apps scaffolder, and @datadog/vite-plugin. Use when a user wants to scaffold, run, debug, upgrade, build, upload, publish, upload without publishing (draft upload), add an upload-no-publish script, set up CI/CD, use OAuth or API/application key auth, trigger/poll Workflow Automation, choose DDSQL or Action Catalog for backend data access, or query app datastores with DDSQL, including backend function troubleshooting.Dd Account SetupEnsure the user has an authenticated Datadog account with a valid DD_API_KEY on the right region before any Datadog setup or instrumentation. Detects existing DD_API_KEY / DD_APP_KEY / DD_SITE, validates them against the Datadog API, and fixes the common wrong-region 403. If no usable key exists, signs the user in (OAuth) or creates a new account, then obtains and validates a key. Use this whenever a user needs a Datadog account or API key, hits a 403 / wrong-region error, or is about to run any