Back to Skills

azure-kusto

Query and analyze data in Azure Data Explorer (Kusto/ADX) using KQL for log analytics, telemetry, and time series analysis. WHEN: KQL queries, Kusto database queries, Azure Data Explorer, ADX clusters, log analytics, time series data, IoT telemetry, anomaly detection.

181stars119forksUpdated 4/8/2026

Security Assessment

Safe(100/100)
Security Score100/100

About azure-kusto

The Azure Kusto skill provides an interface to query and analyze data in Azure Data Explorer (ADX) using the Kusto Query Language (KQL). It enables users to interact with large-scale log, telemetry, and time series datasets efficiently, solving the problem of extracting actionable insights from massive amounts of structured and semi-structured data. By leveraging the high-performance capabilities of ADX, this skill facilitates sub-second query execution on billions of records, making it ideal for real-time monitoring, analytics, and anomaly detection.

This skill offers a range of features including query execution, schema exploration, resource management, and advanced analytics. Users can run KQL queries to retrieve, filter, and aggregate data, explore table structures and column types for query planning, list clusters and databases for resource management, and perform time series analysis or anomaly detection. Core workflows involve discovering available resources, exploring schema to understand data models, executing queries, and analyzing results for reporting and insights. Predefined query patterns support tasks such as basic data retrieval, aggregation analysis, time series analytics, and cross-table joins, ensuring consistent and efficient operations.

Target users include data engineers, analysts, and IT professionals working with telemetry, IoT, security logs, and performance monitoring. Common use cases include monitoring application performance, analyzing security events, performing root cause analysis, and visualizing trends in time series data. Organizations leveraging ADX for large-scale log analytics and telemetry can use this skill to streamline data exploration and reporting workflows, making it suitable for operational monitoring, anomaly detection, and data-driven decision-making.

FAQ

How do I execute a query using this skill?

You can execute a query by specifying a Kusto Query Language (KQL) statement against your ADX database. The skill supports queries for data retrieval, aggregation, and time series analysis.

Which data sources are compatible with this skill?

This skill is compatible with Azure Data Explorer clusters, including log analytics and telemetry datasets. It is optimized for ADX-managed databases and tables.

Can I explore table schemas before running queries?

Yes, the skill supports schema exploration to retrieve table structures, columns, and data types. This helps in understanding the data model and planning queries effectively.

Are there limitations on the size of datasets I can query?

The skill is designed for large-scale datasets in Azure Data Explorer. While ADX handles billions of records efficiently, performance may vary based on query complexity and data volume.

Does this skill support anomaly detection or time series analysis?

Yes, it includes query patterns for time series analytics and anomaly detection, allowing users to monitor trends, calculate aggregates, and visualize data over time.

Install azure-kusto

Download and extract the skill files to your .claude/skills/ directory.

Quick Setup:

  1. Copy the skill folder to .claude/skills/
  2. Claude will automatically detect and use the skill