DevOps & Infra
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
-
cyberstrikeus Skill Cis K8S V200 5 2 4Minimize the admission of containers wishing to share the host IPC namespace (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 2 5Minimize the admission of containers wishing to share the host network namespace (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 2 6Minimize the admission of containers with allowPrivilegeEscalation (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 2 7Minimize the admission of root containers (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 2 8Minimize the admission of containers with the NET_RAW capability (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 2 9Minimize the admission of containers with capabilities assigned (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 3 1Ensure that the CNI in use supports Network Policies (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 3 2Ensure that all Namespaces have Network Policies defined (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 4 1Prefer using secrets as files over secrets as environment variables (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 4 2Consider external secret storage (Manual)
-
cyberstrikeus Skill Cis K8S V200 5 5 1Configure Image Provenance using ImagePolicyWebhook admission controller (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 6 1Create administrative boundaries between resources using namespaces (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 6 2Ensure that the seccomp profile is set to docker/default in your pod definitions (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 6 3Apply Security Context to Your Pods and Containers (Manual)
Audited -
cyberstrikeus Skill Cis K8S V200 5 6 4The default namespace should not be used (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 1 1Ensure that the API server pod specification file permissions are set to 600 or more restrictive (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 1 2Ensure that the API server pod specification file ownership is set to root:root (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 1 3Ensure that the controller manager pod specification file permissions are set to 600 or more restrictive (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 1 4Ensure that the controller manager pod specification file ownership is set to root:root (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 1 5Ensure that the scheduler pod specification file permissions are set to 600 or more restrictive (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 1 6Ensure that the scheduler pod specification file ownership is set to root:root (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 1 7Ensure that the etcd pod specification file permissions are set to 600 or more restrictive (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 1 8Ensure that the etcd pod specification file ownership is set to root:root (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 1 9Ensure that the Container Network Interface file permissions are set to 600 or more restrictive (Manual)
-
cyberstrikeus Skill Cis Ocp V160 1 2 1Ensure that anonymous requests are authorized (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 2Ensure that the --basic-auth-file argument is not set (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 3Ensure that the --token-auth-file parameter is not set (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 4Use https for kubelet connections (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 5Ensure that the kubelet uses certificates to authenticate (Manual)
Audited -
cyberstrikeus Skill Cis GCP Cos 1 1 2Ensure /tmp is configured
Audited -
cyberstrikeus Skill Cis GCP Cos 1 1 3Ensure nodev option set on /tmp partition
Audited -
cyberstrikeus Skill Cis GCP Cos 1 1 4Ensure nosuid option set on /tmp partition
Audited -
cyberstrikeus Skill Cis GCP Cos 1 1 5Ensure noexec option set on /tmp partition
Audited -
cyberstrikeus Skill Cis GCP Cos 1 1 6Ensure nosuid option set on /var partition
Audited -
cyberstrikeus Skill Cis GCP Cos 1 1 7Ensure noexec option set on /var partition
Audited -
cyberstrikeus Skill Cis GCP Cos 1 1 8Ensure nodev option set on /var partition
Audited
Frequently asked questions
What are DevOps & Infra agent skills?
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
Which DevOps & Infra skills are most installed?
Popular DevOps & Infra skills on SkillMD right now include cis-k8s-v200-5.2.4, cis-k8s-v200-5.2.5, cis-k8s-v200-5.2.6. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do DevOps & Infra skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.