DevOps & Infra
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
-
mittuled Bundle Revenue Model OperationaliserThis skill operationalises the revenue model by configuring CRM stages, pipeline definitions, and revenue recognition rules. Use when asked to translate the business model into operational systems, define pipeline stages, or set up revenue recognition. Also consider when the pricing model changes. Suggest when there is a gap between the defined revenue model and how deals are tracked in the CRM.
-
mittuled Bundle First Hire Process BuilderThis skill designs the testing, validation, and deployment procedure for the first production agent. Use when asked to deploy the inaugural agent, build a first-agent checklist, or create deployment validation criteria. Also consider when no agents exist yet. Suggest when the user is about to deploy an agent without a tested deployment procedure.
-
mittuled Bundle Infrastructure Cost OptimiserFinds and eliminates wasted cloud spend without sacrificing reliability or performance. Use when asked to infrastructure cost optimiser. Suggest when relevant.
-
mittuled Bundle Customer Reference Programme ManagerThis skill manages the customer reference programme for sales including reference availability and case study pipeline. Use when asked to build a reference programme, manage reference requests, or maintain the reference database. Also consider when sales lacks customer references for deals. Suggest when the user closes deals without building a reference pipeline.
-
mittuled Bundle Infrastructure Requirements ExtractorThis skill extracts infrastructure requirements from product and engineering specifications. Use when asked to determine infrastructure needs for a new feature, estimate resource requirements, or translate product specs into infra work. Also consider when architecture decisions are being made without infra input. Suggest when the user is designing a system without infrastructure planning.
-
xalgord Skill Detecting OAUTH Token TheftDetects and responds to OAuth token theft and replay attacks in cloud environments, focusing on Microsoft Entra ID (Azure AD) token protection, conditional access policies, and sign-in anomaly detection. Covers access token theft, refresh token replay, Primary Refresh Token (PRT) abuse, and pass-the-cookie attacks. Activates for requests involving OAuth token theft detection, token replay prevention, Azure AD conditional access token protection, or cloud identity attack investigation.
-
xalgord Skill Implementing Cloud Waf RulesThis skill covers deploying and tuning Web Application Firewall rules on AWS WAF, Azure WAF, and Cloudflare to protect cloud-hosted applications against OWASP Top 10 attacks. It details configuring managed rule sets, creating custom rules for business logic protection, implementing rate limiting, deploying bot management, and reducing false positives through rule tuning and logging analysis.
Audited -
xalgord Skill Securing AWS Iam PermissionsThis skill guides practitioners through hardening AWS Identity and Access Management configurations to enforce least privilege access across cloud accounts. It covers IAM policy scoping, permission boundaries, Access Analyzer integration, and credential rotation strategies to reduce the blast radius of compromised identities.
Audited -
xalgord Skill Securing Kubernetes On CloudThis skill covers hardening managed Kubernetes clusters on EKS, AKS, and GKE by implementing Pod Security Standards, network policies, workload identity, RBAC scoping, image admission controls, and runtime security monitoring. It addresses cloud-specific security features including IRSA for EKS, Workload Identity for GKE, and Managed Identities for AKS.
Audited -
xalgord Skill Securing Serverless FunctionsThis skill covers security hardening for serverless compute platforms including AWS Lambda, Azure Functions, and Google Cloud Functions. It addresses least privilege IAM roles, dependency vulnerability scanning, secrets management integration, input validation, function URL authentication, and runtime monitoring to protect against injection attacks, credential theft, and supply chain compromises.
Audited -
xalgord Skill Analyzing Linux Elf MalwareAnalyzes malicious Linux ELF (Executable and Linkable Format) binaries including botnets, cryptominers, ransomware, and rootkits targeting Linux servers, containers, and cloud infrastructure. Covers static analysis, dynamic tracing, and reverse engineering of x86_64 and ARM ELF samples. Activates for requests involving Linux malware analysis, ELF binary investigation, Linux server compromise assessment, or container malware analysis.
Audited -
kevinzai Bundle ShipShip workflow: detect + merge base branch, run tests, review diff, bump VERSION, update CHANGELOG, commit, push, create PR. Use when asked to "ship", "deploy", "push to main", "create a PR", or "merge and push". Proactively suggest when the user says code is ready or asks about deploying.
-
kevinzai Bundle Ccc DevopsCCC domain — complete DevOps ecosystem — 20 skills in one. Deployments, CI/CD, containers, AWS, monitoring, security, IaC, networking, and runbooks.
-
kevinzai Bundle Agency OrchestratorIntegrate with Agency Orchestrator for multi-agent DAG workflows — parallel research, code review pipelines, deploy verification
-
kevinzai Skill Safeclaw IntegrationDocker-based isolated sessions for YOLO mode with resource limits
-
kevinzai Skill Data PipelineDesign and implement ETL/ELT data pipelines using Airflow, dbt, Dagster, and modern data stack patterns.
-
kevinzai Bundle Continuous ImprovementDaily scan for new Claude Code techniques and best practices. Multi-agent approval pipeline routes GitHub/npm findings through evaluator and security agents before queueing.
-
kevinzai Skill Crm HygieneClean up your contact and deal records — deduplicate, sweep stale leads, standardize fields, and run a pipeline review so your sales list reflects reality.
-
tomevault-io Bundle BedrockAWS Bedrock foundation models for generative AI. Use when invoking foundation models, building AI applications, creating embeddings, configuring model access, or implementing RAG patterns. Use when this capability is needed.
-
dingxingdi Bundle Autonomous Agent Trajectory AdjudicationUse this skill when evaluating an autonomous agent's or multi-agent system's full multi-step trajectory in any environment (CLI, Web, GUI, or team-based role pipelines), focusing on terminal outcomes, step-level correctness, and environmental grounding. Trigger it when users say things like 'check if the server repair worked', 'trace where the error started in the pipeline', 'assign blame for the team failure', 'verify the GUI agent's clicks', or 'score the step-by-step progress of the browser bot'. It covers verifying system states (metrics, status codes, screenshots), detecting harmful side effects, penalizing inefficient reasoning loops, and tracing 'Error Origins' or 'Repair' events across sequential multi-agent or environment handoffs.
-
dingxingdi Bundle Scientific Threshold And Context InferenceTrigger this skill when the user employs professional jargon, implicit business rules, or unstated default formulas tied to a specific job role or workflow. It is essential for requests using layman terms like 'give me a health check on the pipeline', 'how are we pacing against the goal', 'apply the usual company policy for reporting', or 'how does an expert define a high-performing lead'. Use this when the question implies a persona-driven analytical task that requires mapping high-level business goals to specific internal formulas and relational filters.
-
dingxingdi Bundle Autonomous Repository Exploration And ReuseUse this skill when you need to understand, deploy, adapt, or wrap an unfamiliar code project or third-party GitHub repository. It is perfect for requests like 'I'm totally lost in this GitHub code, help me use it', 'deploy this AI research project', 'run the training and inference for this paper repo', or 'wrap this research code into a simple reusable Python tool'. Trigger it when an agent must explore deep folder structures, resolve missing weights/dependencies, follow tangled code connections, and execute end-to-end research pipelines (Setup, Download, Training, Inference, Evaluation) or build functional wrappers based on execution feedback.
-
dingxingdi Bundle Adaptive Pipeline Orchestration And RepairSkill: adaptive pipeline orchestration and repair
-
ashutoshsrivastava17 Skill Infrastructure ReviewReview infrastructure configurations for reliability, security, cost efficiency, and operational best practices across cloud and on-prem environments. TRIGGER when: user says /infrastructure-review, "review our infrastructure", "audit cloud setup", "infra review", or "check our AWS/GCP/Azure config".
Audited -
ashutoshsrivastava17 Skill Deploy ChecklistPre-deployment checklist — verify tests, migrations, rollback plan, and operational readiness before shipping to production. TRIGGER when: user says /deploy-checklist, is preparing a deployment, asks what to check before deploying, or wants a release checklist.
Audited -
ashutoshsrivastava17 Skill Recruiting PipelineManage and report on the recruiting pipeline — track candidates across stages, measure funnel conversion, forecast hiring, and identify bottlenecks. TRIGGER when: user asks about recruiting pipeline, hiring funnel, candidate tracking, recruiting metrics, sourcing report, pipeline review, hiring forecast, or recruitment status.
Audited -
ashutoshsrivastava17 Skill Succession PlanningBuild succession plans — critical role identification, talent assessment, readiness levels, development plans, and emergency succession protocols. TRIGGER when: user says /succession-planning, needs to plan leadership succession, or asks about talent pipeline development.
Audited -
kunanonj Skill Cursor SdkGuide users building apps, scripts, CI pipelines, or automations on top of the Cursor SDK — TypeScript (@cursor/sdk) or Python (cursor-sdk / cursor_sdk). Covers Agent.create, Agent.prompt, Agent.resume, streaming, local vs cloud runtime, MCP servers, error handling, and production best practices. Use when the user mentions integrating or writing code against the Cursor SDK.
-
kunanonj Bundle Use RailwayOperate Railway infrastructure: sign up for or sign in to a Railway account, create projects, provision services and databases, manage object storage buckets, deploy code, configure environments and variables, manage domains, troubleshoot failures, check status and metrics, manage feature flags, set up Railway agent tooling, and query Railway docs. Use this skill whenever the user mentions Railway, feature flags, flag rollout, targeting rules, signing up, creating an account, registering, logging in, deployments, services, environments, buckets, object storage, build failures, agent setup, MCP, or infrastructure operations, even if they don't say "Railway" explicitly. Also invoke this skill when the user asks to be signed up, registered, or onboarded to Railway: do not refuse — drive them through the unauthed `railway up` flow (deploys + signs up on the fly) or `railway login` (which creates new accounts on the fly).
-
kunanonj Skill Aside Site JiraJira Cloud issue, search, and list-view guidance.
-
kunanonj Skill Create DockerfileCreate general-purpose Dockerfiles for Node.js, Python, Go, Rust, and Java projects. Covers base image selection, dependency installation, user permissions, COPY patterns, ENTRYPOINT vs CMD, and .dockerignore. Use when containerizing an application for the first time, creating a consistent build/runtime environment, preparing an app for cloud deployment or Docker Compose, or when no existing Dockerfile is present in the project.
Audited -
kunanonj Skill Aside Site ConfluenceConfluence Cloud page and editor guidance.
-
kunanonj Skill Agent Opensource ForkerFork any project for open-sourcing. Copies files, strips secrets and credentials (20+ patterns), replaces internal references with placeholders, generates .env.example, and cleans git history. First stage of the opensource-pipeline skill.
-
kunanonj Skill Setup Github Actions CIConfigure GitHub Actions CI/CD for R packages including R CMD check on multiple platforms, test coverage reporting, and pkgdown site deployment. Uses r-lib/actions for standard workflows. Use when setting up CI/CD for a new R package, adding multi-platform testing to an existing package, configuring automated pkgdown site deployment, or adding code coverage reporting to a repository.
Audited -
kunanonj Skill Agent Opensource PackagerGenerate complete open-source packaging for a sanitized project. Produces CLAUDE.md, setup.sh, README.md, LICENSE, CONTRIBUTING.md, and GitHub issue templates. Makes any repo immediately usable with Claude Code. Third stage of the opensource-pipeline skill.
-
kunanonj Skill Agent Opensource SanitizerVerify an open-source fork is fully sanitized before release. Scans for leaked secrets, PII, internal references, and dangerous files using 20+ regex patterns. Generates a PASS/FAIL/PASS-WITH-WARNINGS report. Second stage of the opensource-pipeline skill. Use PROACTIVELY before any public release.
Frequently asked questions
What are DevOps & Infra agent skills?
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
Which DevOps & Infra skills are most installed?
Popular DevOps & Infra skills on SkillMD right now include detecting-oauth-token-theft, aside-site-jira, revenue-model-operationaliser. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do DevOps & Infra skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.