DevOps & Infra
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
-
cyberstrikeus Skill Cis Gke V190 3 1 1Ensure that the proxy kubeconfig file permissions are set to 644 or more restrictive (Automated)
-
cyberstrikeus Skill Cis Gke V190 3 1 2Ensure that the proxy kubeconfig file ownership is set to root:root (Automated)
-
cyberstrikeus Skill Cis Gke V190 3 1 3Ensure that the kubelet configuration file has permissions set to 644 (Automated)
-
cyberstrikeus Skill Cis Gke V190 3 1 4Ensure that the kubelet configuration file ownership is set to root:root (Automated)
-
cyberstrikeus Skill Cis Gke V190 4 1 9Avoid non-default bindings to system:unauthenticated (Automated)
-
cyberstrikeus Skill Cis Gke V190 4 2 1Ensure that the cluster enforces Pod Security Standard Baseline profile or stricter for all namespaces (Manual)
-
cyberstrikeus Skill Cis Gke V190 4 3 2Ensure that all Namespaces have Network Policies defined (Automated)
-
cyberstrikeus Skill Cis Gke V190 4 5 1Configure Image Provenance using ImagePolicyWebhook admission controller (Manual)
-
cyberstrikeus Skill Cis Gke V190 4 6 1Create administrative boundaries between resources using namespaces (Manual)
-
cyberstrikeus Skill Cis Gke V190 5 1 1Ensure Image Vulnerability Scanning is enabled (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 1 2Minimize user access to Container Image repositories (Manual)
-
cyberstrikeus Skill Cis Gke V190 5 1 3Minimize cluster access to read-only for Container Image repositories (Manual)
-
cyberstrikeus Skill Cis Gke V190 5 1 4Ensure only trusted container images are used (Manual)
-
cyberstrikeus Skill Cis Gke V190 5 2 1Ensure GKE clusters are not running using the Compute Engine default service account (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 2 2Prefer using dedicated GCP Service Accounts and Workload Identity (Manual)
-
cyberstrikeus Skill Cis Gke V190 5 3 1Ensure Kubernetes Secrets are encrypted using keys managed in Cloud KMS (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 4 1Ensure the GKE Metadata Server is Enabled (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 5 1Ensure Container-Optimized OS (cos_containerd) is used for GKE node images (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 5 2Ensure Node Auto-Repair is enabled for GKE nodes (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 5 3Ensure Node Auto-Upgrade is enabled for GKE nodes (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 5 4When creating New Clusters - Automate GKE version management using Release Channels (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 5 5Ensure Shielded GKE Nodes are Enabled (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 5 6Ensure Integrity Monitoring for Shielded GKE Nodes is Enabled (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 5 7Ensure Secure Boot for Shielded GKE Nodes is Enabled (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 6 1Enable VPC Flow Logs and Intranode Visibility (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 6 2Ensure use of VPC-native clusters (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 6 3Ensure Control Plane Authorized Networks is Enabled (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 6 4Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 6 5Ensure clusters are created with Private Nodes (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 6 6Consider firewalling GKE worker nodes (Manual)
-
cyberstrikeus Skill Cis Gke V190 5 6 7Ensure use of Google-managed SSL Certificates (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 7 1Ensure Logging and Cloud Monitoring is Enabled (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 7 2Enable Linux auditd logging (Manual)
-
cyberstrikeus Skill Cis Gke V190 5 8 1Ensure authentication using Client Certificates is Disabled (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 8 3Ensure Legacy Authorization (ABAC) is Disabled (Automated)
-
cyberstrikeus Skill Cis Gke V190 5 9 1Enable Customer-Managed Encryption Keys (CMEK) for GKE Persistent Disks (PD) (Manual)
Frequently asked questions
What are DevOps & Infra agent skills?
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
Which DevOps & Infra skills are most installed?
Popular DevOps & Infra skills on SkillMD right now include cis-gke-v190-3.1.1, cis-gke-v190-3.1.2, cis-gke-v190-3.1.3. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do DevOps & Infra skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.