Now liveThe Skillselion MCP - thousands of ranked skills, loaded into your agent mid-task. No install.Get it →
cinience avatar

Alicloud Observability Sls Log Query

  • 340 installs
  • 396 repo stars
  • Updated July 18, 2026
  • cinience/alicloud-skills

alicloud-observability-sls-log-query is an agent skill that queries Alibaba Cloud Log Service using query|analysis syntax and the Python SDK for developers who need production log search and incident investigation withou

About

alicloud-observability-sls-log-query is a cinience/alicloud-skills observability skill for Alibaba Cloud Log Service (SLS). It composes SLS query clauses like `status:500` with optional analysis clauses such as `* | SELECT status, count(*) AS pv GROUP BY status`, then executes searches via the Python SDK or bundled scripts. Configuration requires five environment variables: ALIBABA_CLOUD_ACCESS_KEY_ID, ALIBABA_CLOUD_ACCESS_KEY_SECRET, SLS_ENDPOINT, SLS_PROJECT, and SLS_LOGSTORE. Two helper scripts—query_logs.py and troubleshoot.py—support `--last-minutes`, `--limit`, and parallel logstore queries. Developers reach for this skill during AliCloud production incidents when they need agent-driven error aggregation, audit log review, or latency investigation instead of manual SLS console queries.

  • SLS log store navigation
  • Query syntax and time-window filters
  • Error and latency investigation patterns
  • Audit and access log retrieval
  • Incident triage query templates

Alicloud Observability Sls Log Query by the numbers

  • 340 all-time installs (skills.sh)
  • Ranked #403 of 1,039 Cloud & Infrastructure skills by installs in the Skillselion catalog
  • Data as of Aug 5, 2026 (Skillselion catalog sync)
npx skills add https://github.com/cinience/alicloud-skills --skill alicloud-observability-sls-log-query

Add your badge

Show developers this skill is listed on Skillselion. Paste this into your README.

Listed on Skillselion
Installs340
repo stars396
Last updatedJuly 18, 2026
Repositorycinience/alicloud-skills

How do you query Alibaba Cloud SLS logs from code?

Query Alibaba Cloud Log Service (SLS) to trace errors, audit access, and investigate latency or outage signals without leaving the agent session.

Who is it for?

Developers operating AliCloud workloads who need agent-assisted SLS log search, error aggregation, and root-cause analysis during incidents.

Skip if: Teams on AWS CloudWatch, GCP Logging, or Datadog who do not run workloads on Alibaba Cloud Log Service.

When should I use this skill?

User mentions Alibaba Cloud SLS, Log Service queries, status:500 errors, log troubleshooting, or query|analysis syntax on AliCloud.

What you get

Filtered log rows, query|analysis aggregation tables, and troubleshooting summaries from SLS projects and logstores.

  • filtered log results
  • aggregation tables
  • troubleshooting summaries

By the numbers

  • Requires 5 environment variables for SLS authentication and targeting
  • Bundles 2 Python scripts: query_logs.py and troubleshoot.py

Files

SKILL.mdMarkdownGitHub ↗

Category: service

SLS Log Query and Troubleshooting

Use SLS query|analysis syntax and Python SDK for log search, filtering, and analytics.

Prerequisites

  • Install SDK (virtual environment recommended to avoid PEP 668 restrictions):
python3 -m venv .venv
. .venv/bin/activate
python -m pip install -U aliyun-log-python-sdk
  • Configure environment variables:
  • ALIBABA_CLOUD_ACCESS_KEY_ID
  • ALIBABA_CLOUD_ACCESS_KEY_SECRET
  • SLS_ENDPOINT (e.g. cn-hangzhou.log.aliyuncs.com)
  • SLS_PROJECT
  • SLS_LOGSTORE(supports a single value or comma-separated values)

Query Composition

  • Query clause: filters logs (e.g. status:500).
  • Analysis clause: statistical aggregation, format query|analysis.
  • Example: * | SELECT status, count(*) AS pv GROUP BY status

See references/query-syntax.md for full syntax.

Quickstart (Python SDK)

import os
import time
from aliyun.log import LogClient, GetLogsRequest

client = LogClient(
    os.environ["SLS_ENDPOINT"],
    os.environ["ALIBABA_CLOUD_ACCESS_KEY_ID"],
    os.environ["ALIBABA_CLOUD_ACCESS_KEY_SECRET"],
)

project = os.environ["SLS_PROJECT"]
logstore = os.environ["SLS_LOGSTORE"]

query = "status:500"
start_time = int(time.time()) - 15 * 60
end_time = int(time.time())

request = GetLogsRequest(project, logstore, start_time, end_time, query=query)
response = client.get_logs(request)
for log in response.get_logs():
    print(log.contents)

Script quickstart

python skills/observability/sls/alicloud-observability-sls-log-query/scripts/query_logs.py \
  --query "status:500" \
  --last-minutes 15

Optional args: --project, --logstore(repeatable, or comma-separated values), --endpoint, --start, --end, --last-minutes, --limit, --parallel.

Troubleshooting script

python skills/observability/sls/alicloud-observability-sls-log-query/scripts/troubleshoot.py \
  --group-field status \
  --last-minutes 30 \
  --limit 20

Optional args: --error-query, --group-field, --limit, --logstore(repeatable, or comma-separated values), --parallel, plus the time range args above.

Workflow

1) Ensure Logstore indexing is enabled (queries/analysis fail without index). 2) Write query clause and append analysis clause when needed. 3) Execute with SDK/script and inspect results. 4) Control returned rows with limit; narrow time range when needed.

Validation

mkdir -p output/alicloud-observability-sls-log-query
for f in skills/observability/sls/alicloud-observability-sls-log-query/scripts/*.py; do
  python3 -m py_compile "$f"
done
echo "py_compile_ok" > output/alicloud-observability-sls-log-query/validate.txt

Pass criteria: command exits 0 and output/alicloud-observability-sls-log-query/validate.txt is generated.

Output And Evidence

  • Save artifacts, command outputs, and API response summaries under output/alicloud-observability-sls-log-query/.
  • Include key parameters (region/resource id/time range) in evidence files for reproducibility.

References

  • Syntax and examples:references/query-syntax.md
  • Python SDK initialization and queries:references/python-sdk.md
  • Troubleshooting templates:references/templates.md
  • Source list: references/sources.md

Related skills

How it compares

Pick this skill for AliCloud SLS log queries inside agents; use generic observability MCPs when the stack is not on Alibaba Cloud Log Service.

FAQ

What environment variables does alicloud-observability-sls-log-query need?

alicloud-observability-sls-log-query requires ALIBABA_CLOUD_ACCESS_KEY_ID, ALIBABA_CLOUD_ACCESS_KEY_SECRET, SLS_ENDPOINT, SLS_PROJECT, and SLS_LOGSTORE, with logstore supporting single or comma-separated values.

How does SLS query|analysis syntax work in this skill?

alicloud-observability-sls-log-query uses a query clause to filter logs (e.g. status:500) and an optional analysis clause after a pipe for SQL-style aggregation like SELECT status, count(*) GROUP BY status.

Which scripts ship with alicloud-observability-sls-log-query?

alicloud-observability-sls-log-query bundles query_logs.py for targeted searches and troubleshoot.py for grouped error investigation, both supporting --last-minutes, --limit, and parallel logstore args.

This week in AI coding

Five minutes, every Monday - the tools, releases and tactics for developers.

unsubscribe anytime.