search-performance-optimizer

Installation
SKILL.md

Search Performance Optimizer

Improve one existing functional search without claiming more than its evidence supports. Preserve result semantics, separate search-owned costs from workload or platform pressure, and leave every change as a recommendation unless the user separately authorizes execution.

Prerequisites

Start with every sanitized fact the user supplied. For case-specific diagnosis or rewriting, seek the current SPL, intended result semantics, time range, and available job or workload evidence. Useful artifacts include Job Inspector, Job Details, search.log excerpts, SID, runtime, scan/event/result counts, bucket or per-indexer timing, schedule or refresh cadence, and Monitoring Console search activity.

Installs
29
GitHub Stars
29
First Seen
Aug 14, 2026
search-performance-optimizer — splunk/splunk-agent-skills