DevOps & Infra
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
-
cyberstrikeus Skill Cis Aks V180 4 1 11Minimize access to webhook configuration objects (Manual)
Audited -
cyberstrikeus Skill Cis Aks V180 4 1 12Minimize access to the service account token creation (Manual)
-
cyberstrikeus Skill Cis GCP Cos 1 6Ensure AppArmor is installed
Audited -
cyberstrikeus Skill Cis GCP Cos 4 2Ensure logrotate is configured
Audited -
cyberstrikeus Skill Cis GCP Cos 5 4Ensure root login is restricted to system console
Audited -
cyberstrikeus Skill Cis GCP Cos 5 5Ensure access to the su command is restricted
Audited -
cyberstrikeus Skill Cis Tomcat101 9 2Disable deploy on startup of applications (Automated)
Audited -
cyberstrikeus Skill Cis Tomcat7 V100 9 3Disable deploy on startup of applications
Audited -
cyberstrikeus Skill Cis Gke Autopilot V100 4 1 2Minimize access to secrets (Automated)
-
cyberstrikeus Skill Cis Gke Autopilot V100 4 1 7Limit use of the Bind, Impersonate and Escalate permissions in the Kubernetes cluster (Manual)
Audited -
cyberstrikeus Skill Cis Gke Autopilot V100 4 1 8Avoid bindings to system:anonymous (Automated)
Audited -
cyberstrikeus Skill Cis Gke Autopilot V100 4 1 9Avoid non-default bindings to system:unauthenticated (Automated)
Audited -
cyberstrikeus Skill Cis Gke Autopilot V100 4 2 1Ensure that the cluster enforces Pod Security Standard Baseline profile or stricter for all namespaces (Manual)
Audited -
cyberstrikeus Skill Cis Gke Autopilot V100 4 3 1Ensure that all Namespaces have Network Policies defined (Automated)
Audited -
cyberstrikeus Skill Cis Gke Autopilot V100 4 4 1Consider external secret storage (Manual)
Audited -
cyberstrikeus Skill Cis Gke Autopilot V100 4 5 1Configure Image Provenance using ImagePolicyWebhook admission controller (Manual)
Audited -
cyberstrikeus Skill Cis Gke Autopilot V100 4 6 3Apply Security Context to Pods and Containers (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 17Ensure that the --insecure-port argument is set to 0 (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 18Ensure that the --secure-port argument is not set to 0 (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 19Ensure that the healthz endpoint is protected by RBAC (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 20Ensure that the --audit-log-path argument is set (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 21Ensure that the audit logs are forwarded off the cluster for retention (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 22Ensure that the maximumRetainedFiles argument is set to 10 or as appropriate (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 23Ensure that the maximumFileSizeMegabytes argument is set to 100 (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 24Ensure that the --request-timeout argument is set (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 25Ensure that the --service-account-lookup argument is set to true (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 26Ensure that the --service-account-key-file argument is set as appropriate (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 27Ensure that the --etcd-certfile and --etcd-keyfile arguments are set as appropriate (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 28Ensure that the --tls-cert-file and --tls-private-key-file arguments are set as appropriate (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 29Ensure that the --client-ca-file argument is set as appropriate (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 30Ensure that the --etcd-cafile argument is set as appropriate (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 31Ensure that encryption providers are appropriately configured (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 32Ensure that the API Server only makes use of Strong Cryptographic Ciphers (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 1 2 33Ensure unsupported configuration overrides are not used (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 4 1 10Ensure that the kubelet configuration file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis Ocp V160 4 2 10Ensure that the --rotate-certificates argument is not set to false (Manual)
Audited
Frequently asked questions
What are DevOps & Infra agent skills?
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
Which DevOps & Infra skills are most installed?
Popular DevOps & Infra skills on SkillMD right now include cis-aks-v180-4.1.11, cis-aks-v180-4.1.12, cis-gcp-cos-1.6. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do DevOps & Infra skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.