DevOps & Infra
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
-
techtideohio Bundle Techtide Falco Runtime Threat Rules ReviewUse this skill when reviewing Falco rules files, falco.yaml configuration, or runtime security posture for a Kubernetes workload. Trigger when a user provides Falco rules YAML, asks whether their Falco setup covers a specific threat, questions rule exception scope, or wants to validate that Falco alert output reaches their SIEM or incident response pipeline.
-
techtideohio Bundle Techtide GCP Cloudbuild Deploy Cicd OperatorBuild and operate CI/CD pipelines using Cloud Build, Cloud Deploy delivery pipelines, Artifact Registry, SLSA provenance generation, and release gating with approval workflows.
-
techtideohio Bundle Techtide GCP Serverless Production ReadinessReview Cloud Run and Cloud Functions gen2 for production readiness - min-instances cold start, memory and CPU allocation, VPC connector configuration, Secret Manager injection, CMEK encryption, concurrency limits, and traffic splitting safety.
-
techtideohio Bundle Techtide Hetzner Infrastructure ReviewerReview Hetzner Cloud infrastructure posture including Firewall inbound and outbound rules and server attachment, Load Balancer health check configuration and target pool design, private Network topology, Floating IP and Primary IP exposure, and region distribution across fsn1, nbg1, and hel1. Use when the user asks to audit or improve Hetzner Cloud network security or architecture.
-
techtideohio Bundle Techtide Huawei Dew Kms Lifecycle StewardManage Huawei DEW (Data Encryption Workshop) - KMS key lifecycle and rotation, CSMS secret rotation automation, CBH (Cloud Bastion Host) privileged access session management, and DBSS database encryption and SQL audit.
-
techtideohio Bundle Techtide Alibaba Iac Change Safety ReviewReview Terraform and ROS (Resource Orchestration Service) changes targeting Alibaba Cloud - blast radius analysis, resource deletion detection, cross-stack dependency impact, Resource Directory scope, and rollback plan completeness.
-
techtideohio Bundle Techtide AWS Ecs Service Remediation OperatorCorrect AWS ECS and Fargate service definitions, task definition config, deployment parameters, health checks, environment settings, and rollout wiring in-repo. Use for non-destructive repo fixes only; do not force deployments or mutate live services from this role.
-
techtideohio Bundle Techtide AWS Event Driven Architecture ReviewReview AWS event-driven system design across EventBridge, event buses, Pipes, SQS, SNS, Step Functions, event schemas, filtering, cross-account routing, retries, DLQs, replay, idempotency, monitoring, and event-loop risk. Prefer serverless production readiness for Lambda runtime/deployment readiness.
-
techtideohio Bundle Techtide AWS Live Deployment Guarded OperatorOperate guarded live AWS deployment changes with explicit account, region, profile, approval, dry-run, rollback, and verification gates. Use only when the target environment is confirmed and a live deployment action is intentionally requested.
-
techtideohio Bundle Techtide AWS Observability Incident ResponderInvestigate broad AWS incidents and observability gaps using CloudWatch metrics, logs, alarms, traces, EventBridge events, service health, runbooks, timelines, blast radius, root-cause discipline, and post-incident actions. Prefer RDS/Aurora investigator for database-specific performance incidents.
-
techtideohio Bundle Techtide Azure Governance Policy GuardrailsUse this skill for Azure Policy guardrails, initiatives, assignment scope, management-group inheritance, exclusions, remediation risk, tag governance, allowed regions or SKUs, and staged governance rollout reviews.
-
techtideohio Bundle Techtide Azure Migrate Landing Zone CutoverPlan and stress-test Azure migration cutovers across landing-zone readiness, Azure Migrate assessments, dependency sequencing, permissions, rollback, and operational ownership. Use when a migration plan needs a go/no-go verdict instead of vague optimism.
-
techtideohio Bundle Techtide Azure Waf Cost Optimization ReviewReview Azure workload cost posture against the Well-Architected Framework Cost Optimization pillar: cost modeling, rightsizing, reservations, hybrid benefit, storage lifecycle, and idle resource elimination.
-
techtideohio Bundle Techtide GCP Event Driven Architecture ReviewReview GCP Pub/Sub, Eventarc, Cloud Tasks, Cloud Scheduler, and Workflows designs - dead-letter topics, message ordering, idempotency, fan-out blast radius, schema registry, and retry storm risk.
-
techtideohio Bundle Techtide GCP Observability Incident ResponderRespond to incidents and set up observability using Cloud Monitoring, Cloud Logging, Error Reporting, Cloud Trace, and SLO burn rate alerting.
-
techtideohio Bundle Techtide Hetzner Live Firewall Rule GuardGuard Hetzner Cloud Firewall rule mutations and server attachment changes with mandatory pre-mutation snapshot of current rules, blast-radius review, explicit human approval, target confirmation, account, region, and rollback plan. Use only when live Firewall rule changes are required and all pre-flight checks are confirmed.
-
techtideohio Bundle Techtide Huawei Iam Least Privilege ReviewAudit Huawei Cloud IAM fine-grained policies, SCP (Service Control Policy) at Organizations level, agency trust relationships (cross-account delegation), and enterprise project permission boundaries.
-
techtideohio Bundle Techtide Huawei Registry Artifact GovernorGovern Huawei Cloud SWR (Software Repository for Container) - image retention policy, vulnerability scanning via VSS (Vulnerability Scan Service) integration, namespace permission least privilege, cross-region image replication, and supply chain security posture.
-
techtideohio Bundle Techtide Ionos Kubernetes Platform OperatorReview IONOS managed Kubernetes cluster and node pool configuration covering cluster readiness, node pool sizing and autoscaling, workload placement strategies, PodDisruptionBudget coverage, control-plane upgrade safety, kubeconfig management, LAN attachment, and GDPR-compliant cluster region selection. Use when the user asks to assess, configure, or troubleshoot IONOS managed Kubernetes clusters or node pools.
-
techtideohio Bundle Techtide Ionos Security Compliance ReviewerAudit IONOS Cloud security and compliance posture covering GDPR data residency and data sovereignty, ISO 27001 control alignment, encryption at rest and in transit, private LAN isolation, IAM role and bearer token hygiene, regional endpoint correctness, audit trail coverage, and vulnerability posture. Use when the user asks to assess, improve, or evidence IONOS Cloud security or GDPR compliance.
-
techtideohio Bundle Techtide Nvidia Model Promotion GatekeeperUse this skill when an operator is about to promote an NVIDIA NIM container from staging to production and needs a runtime-evidence go/no-go decision. The skill executes a fixed allowlist of cosign/crane/oras/grype commands against the candidate image, then emits a signed attestation JSON whose verdict is one of promote, block, or manual-review. Trigger when the user asks "is this NIM safe to promote", "verify this container before deploy", or hands the agent a `nvcr.io/...` image reference and a current-prod digest. Live tier counterpart to `techtide-nvidia-ngc-nim-supply-chain-governor` (which is static-review only).
-
techtideohio Bundle Techtide Alibaba Actiontrail Audit AnalystQuery Alibaba Cloud ActionTrail management API call history, build governance audit reports, create SLS-based compliance evidence trails, and detect anomalous admin activity patterns.
-
techtideohio Bundle Techtide Alibaba Security Center HardeningHarden Alibaba Cloud security posture via Security Center (threat detection, vulnerability scanning, baseline checks), WAF, Anti-DDoS Pro, Cloud Firewall, and Network Traffic Analysis (NTA).
-
techtideohio Bundle Techtide Azure Live Cost Budget Action GuardGate Azure budget action changes and GPU/HPC SKU provisioning against approved spend limits, with quota audits and emergency spend-stop playbooks.
-
techtideohio Bundle Techtide Azure Live Pim Jit Activation GuardGate Entra ID PIM eligible role activations with justification, MFA, ticket binding, time-bound scope, and approval workflow gates before any privileged Azure role becomes active.
-
techtideohio Bundle Techtide GCP Bigquery Cost Performance AnalystAnalyze BigQuery slot reservation sizing, BI Engine acceleration, query cost estimation, dataset governance (expiration, access controls), and partitioning/clustering optimization to reduce on-demand scan costs.
-
techtideohio Bundle Techtide GCP Certificate Manager Issuer ReviewReview GCP Certificate Manager and classic Google-managed TLS certificates - certificate map configuration, DNS authorization, CAA record validation, certificate rotation automation, wildcard vs SAN design, and expiry monitoring.
-
techtideohio Bundle Techtide Hetzner Cost Optimization AnalystReview Hetzner Cloud cost posture across server type selection, idle Volumes, unattached Floating IPs and Primary IPs, underutilized Load Balancers, Storage Box consumption, and snapshot accumulation. Use when the user asks to reduce or explain Hetzner Cloud spend.
-
techtideohio Bundle Techtide Huawei Ief Edge Computing OperatorManage IEF (Intelligent Edge Fabric) edge node lifecycle, edge application deployment as container workloads, IoT device twin management, and cloud-edge-device unified control plane with offline operation support.
-
techtideohio Bundle Techtide Huawei Obs Data Perimeter GovernorGovern Huawei Cloud OBS (Object Storage Service) data perimeters - bucket policy and ACL public exposure, Block Public Access configuration, VPC endpoint binding for private access, WORM (Object Lock), cross-region replication compliance, and MLPS 2.0 data residency enforcement.
-
techtideohio Bundle Techtide Alibaba Registry Artifact GovernorGovern Alibaba Cloud Container Registry (ACR) - Enterprise Edition vs Personal Edition selection, image vulnerability scanning, namespace IAM least privilege, image retention policies, cross-region replication, and supply chain security posture.
-
techtideohio Bundle Techtide Azure Cosmosdb Application DeveloperUse this skill for Azure Cosmos DB application development work, especially NoSQL data modeling, document structure, partition-aware access patterns, point reads, query design, SDK usage, transactional batch scope, consistency-aware reads, change feed integration, and Cosmos DB development guidance.
-
techtideohio Bundle Techtide Huawei Waf Cost Optimization ReviewAssess Huawei Cloud cost efficiency using the Well-Architected Framework Cost Optimization pillar: ECS flavor selection including Kunpeng Arm, Yearly/Monthly vs Pay-Per-Use billing, Spot Instances, Enterprise Project cost attribution, and Cost Center monitoring.
-
techtideohio Bundle Techtide Oci Devops Container Platform EngineerEngineer and review Oracle Cloud Infrastructure DevOps, OKE, OCIR, build/deploy pipelines, Kubernetes platform, and container runtime workflows. Use when asked to inspect OCI Container Engine clusters, DevOps projects, OCIR repositories, CI/CD IAM, deployment safety, cluster operations, image promotion, or container platform reliability.
-
techtideohio Bundle Techtide Alibaba Oss Data Perimeter GovernorGovern Alibaba Cloud OSS data perimeters - bucket ACL and policy conflict resolution, Block Public Access configuration, cross-account access via RAM role, VPC endpoint binding for private access, WORM (Object Lock), and MLPS 2.0 data residency compliance.
-
techtideohio Bundle Techtide AWS Rds Aurora Performance InvestigatorInvestigate Amazon RDS and Aurora-specific incidents involving latency, connection exhaustion, slow queries, lock waits, storage pressure, CPU/I/O saturation, replica lag, failover behavior, Performance Insights, and database capacity. Prefer this for database performance; prefer broad observability responder for non-database incidents.
Frequently asked questions
What are DevOps & Infra agent skills?
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
Which DevOps & Infra skills are most installed?
Popular DevOps & Infra skills on SkillMD right now include techtide-ionos-kubernetes-platform-operator, techtide-alibaba-registry-artifact-governor, techtide-falco-runtime-threat-rules-review. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do DevOps & Infra skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.