Skip to main content

A natural shell for debugging Juju Kubernetes workload containers via Pebble

Project description

borescope

A natural shell for debugging Juju Kubernetes workload containers.

Kubernetes charm workload containers usually run a rock with no shell — so when something breaks, juju ssh --container=workload … drops you nowhere useful. borescope gives you a prompt that feels like bash but talks to the container's Pebble instead of a real shell:

$ borescope myapp/0
pebble:/# ls /var/log/myapp
pebble:/# tail -f /var/log/myapp/error.log
pebble:/# services
pebble:/# logs --follow myapp
pebble:/# plan
pebble:/# exit

No setup ceremony: borescope picks up your current Juju controller/model and uses your existing juju authority — if you can juju ssh to the unit, borescope works; if you can't, it fails the same way.

Install

From the snap store:

sudo snap install borescope
sudo snap connect borescope:dot-local-share-juju

The dot-local-share-juju connection is required: the snap bundles its own juju, but it needs access to your ~/.local/share/juju (JUJU_DATA) to know which controller and model you're talking to. The ssh-keys plug auto-connects for juju ssh; if it doesn't, run sudo snap connect borescope:ssh-keys as well.

Or from PyPI:

uv tool install borescope    # or: uvx borescope, pipx install borescope

Usage

borescope <unit>                       # default (first) workload container
borescope <unit> --container=<name>    # a specific workload container
borescope --model <model> <unit>
borescope <unit> --command "services"  # one-shot, no REPL (for scripts)
borescope <unit> --snapshot            # dump container state as JSON

Documentation

Full documentation — a tutorial, how-to guides, and CLI/command reference — is at https://tonyandrewmeyer.github.io/borescope/.

The docs are plain Markdown under docs/src/, built into static HTML with a small script (no docs framework). To build them locally:

uv run python docs/src/_build.py     # or: tox -e docs

See docs/README.md for the authoring rules.

How it works

borescope is three thin, independently-testable layers:

  • Transport — talks to a Pebble. The primary backend (CliTransport) reaches the workload's Pebble through the charm containerjuju ssh <unit> (the charm container always has a shell) pointed at the workload's socket, which Juju mounts there at /charm/containers/<name>/pebble.socket. This works even against rocks with no shell (the shell lives in the charm container, not the rock) and stays entirely within your Juju authority — no kubectl or cluster-admin. It drives pebble via shimmer (a drop-in ops.pebble.Client over the Pebble CLI). When the Pebble socket is directly reachable (running inside the charm, or a local Pebble), SocketTransport uses the real ops.pebble.Client HTTP API instead.
  • Discovery — turns a unit reference into the right Pebble: confirms the unit, reads the charm's metadata.yaml for workload container names, and sanity-checks the container is alive. Everything uses your Juju model access — no kubectl / cluster-admin.
  • Shell — a small REPL: cd/pwd, path-aware tab completion, history, and a minimal command set. Pebble's own vocabulary (services, logs, plan, …) is first-class, not hidden behind a pebble prefix. For anything else, exec <cmd> runs a binary that's already in the container.

Scope

borescope is for Kubernetes charms (which run Pebble). Machine charms already have a real shell and are out of scope. It deliberately ships a minimal command set and grows on request — if a tool exists in the container, reach it with exec.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

borescope-1.0.1.tar.gz (75.0 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

borescope-1.0.1-py3-none-any.whl (52.4 kB view details)

Uploaded Python 3

File details

Details for the file borescope-1.0.1.tar.gz.

File metadata

  • Download URL: borescope-1.0.1.tar.gz
  • Upload date:
  • Size: 75.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for borescope-1.0.1.tar.gz
Algorithm Hash digest
SHA256 1594b77f0390c1c27044e47ed307491e6edd007a6f2500c03ca96680742c4b0e
MD5 e4d4506e3a31bff294266916c3789984
BLAKE2b-256 a3f2dbcd5f061b6e696a233ef855c1fdfbf9431a85e9d8ee880c0266c46ef557

See more details on using hashes here.

Provenance

The following attestation bundles were made for borescope-1.0.1.tar.gz:

Publisher: publish.yaml on tonyandrewmeyer/borescope

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file borescope-1.0.1-py3-none-any.whl.

File metadata

  • Download URL: borescope-1.0.1-py3-none-any.whl
  • Upload date:
  • Size: 52.4 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for borescope-1.0.1-py3-none-any.whl
Algorithm Hash digest
SHA256 340000a58c1bd2493eadc604ca0904747e3bd6870284dbf597b7c8e4fb260011
MD5 cba6d2fce616747e033f5fbfda2d800f
BLAKE2b-256 1fb050e3a56c7ac9e55daed65d81fa66c42a5d9aea5be05ba3da3a3ce6da36f4

See more details on using hashes here.

Provenance

The following attestation bundles were made for borescope-1.0.1-py3-none-any.whl:

Publisher: publish.yaml on tonyandrewmeyer/borescope

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page