Elasticsearch Anomaly Detection Explainer

by elasticbaa511126ba2No license592 starsListed Oct 8, 2026Updated Oct 8, 2026Repository updated yesterday

Explain Elasticsearch ML anomaly detection scores, model behavior, and result interpretation. Use when the user asks why a score is high or low, how the model learns, what the numbers mean, or how to troubleshoot unexpected anomaly scores.

Only the file list is public. File contents are available once the skill is installed in a workspace.

PathSizeType
references/explainer-reference.md6.7 KBtext/markdown
SKILL.md17.5 KBtext/markdown

Source and attribution

Source:elastic/agent-skillsinskills/elasticsearch/elasticsearch-anomaly-detection-explainerat commitbaa5111

License: No license

Content belongs to its original authors. SourceWeft indexes it from a public repository.

Report or request removal

More from elastic/agent-skills

Elasticsearch Search Relevance

elastic

Improve Elasticsearch search relevance for content and catalog indices: pin or promote results with query rules (correct rule type, criteria, and rule-query wiring) and tune organic ranking with multi_match, field boosts, and analysis grounded in the index mapping. Use when search results rank poorly, a specific document must appear first for a query, or the user asks to tune full-text matching — not for ES|QL analytics, index ingest, or cluster health.

Awaiting classification592updated yesterday

Elasticsearch Query Optimization

elastic

Diagnose slow Elasticsearch Query DSL searches and propose measured fixes. Use when a search is slow, profile output shows an expensive clause, exact-match filters sit in scoring context, or leading wildcards dominate latency. Ground every recommendation in search profiling — move non-scoring clauses to filter context, eliminate leading wildcards, and re-profile to confirm improvement.

Awaiting classification592updated yesterday

Elasticsearch Ingest

elastic

Load CSV and JSON files into Elasticsearch indices using the bulk API and explicit mappings when field types matter. Use when batch-importing local files, converting CSV rows or JSON arrays to NDJSON bulk format, or verifying document counts and mappings after ingest — not for Logstash pipelines, Beats, custom scripts, or index-to-index reindex.

Awaiting classification592updated yesterday

Elasticsearch Index Design

elastic

Designs and reviews Elasticsearch index mappings from access patterns, covering field types, multi-fields, and shard settings.

Data & Analytics592updated yesterday

Kibana Dashboards

elastic

Create and manage Kibana Dashboards and Lens visualizations. Use when you need to define dashboards and visualizations declaratively, version control them, or automate their deployment.

Awaiting classification592updated yesterday

Kibana Anomaly Detection

elastic

Investigates, explains, troubleshoots and configures Elastic ML anomaly detection jobs in Kibana/Elasticsearch.

Data & Analytics592updated yesterday