DevOps & Infra
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
-
cyberstrikeus Skill Cis K8S V1111 5 2 11Minimize the admission of Windows HostProcess Containers (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1111 5 2 12Minimize the admission of HostPath volumes (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1111 5 2 13Minimize the admission of containers which use HostPorts (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 10Ensure that the Container Network Interface file ownership is set to root:root (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 11Ensure that the etcd data directory permissions are set to 700 or more restrictive (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 12Ensure that the etcd data directory ownership is set to etcd:etcd (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 13Ensure that the default administrative credential file permissions are set to 600 (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 14Ensure that the default administrative credential file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 15Ensure that the scheduler.conf file permissions are set to 600 or more restrictive (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 16Ensure that the scheduler.conf file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 17Ensure that the controller-manager.conf file permissions are set to 600 or more restrictive (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 18Ensure that the controller-manager.conf file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 19Ensure that the Kubernetes PKI directory and file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 20Ensure that the Kubernetes PKI certificate file permissions are set to 644 or more restrictive (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 1 21Ensure that the Kubernetes PKI key file permissions are set to 600 (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 10Ensure that the admission control plugin AlwaysAdmit is not set (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 11Ensure that the admission control plugin AlwaysPullImages is set (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 12Ensure that the admission control plugin ServiceAccount is set (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 13Ensure that the admission control plugin NamespaceLifecycle is set (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 14Ensure that the admission control plugin NodeRestriction is set (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 15Ensure that the --profiling argument is set to false (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 16Ensure that the --audit-log-path argument is set (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 17Ensure that the --audit-log-maxage argument is set to 30 or as appropriate (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 18Ensure that the --audit-log-maxbackup argument is set to 10 or as appropriate (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 19Ensure that the --audit-log-maxsize argument is set to 100 or as appropriate (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 20Ensure that the --request-timeout argument is set as appropriate (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 21Ensure that the --service-account-lookup argument is set to true (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 22Ensure that the --service-account-key-file argument is set as appropriate (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 23Ensure that the --etcd-certfile and --etcd-keyfile arguments are set as appropriate (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 24Ensure that the --tls-cert-file and --tls-private-key-file arguments are set as appropriate (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 25Ensure that the --client-ca-file argument is set as appropriate (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 26Ensure that the --etcd-cafile argument is set as appropriate (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 27Ensure that the --encryption-provider-config argument is set as appropriate (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 28Ensure that encryption providers are appropriately configured (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 29Ensure that the API Server only makes use of Strong Cryptographic Ciphers (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1120 1 2 30Ensure that the --service-account-extend-token-expiration parameter is set to false (Automated)
Audited
Frequently asked questions
What are DevOps & Infra agent skills?
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
Which DevOps & Infra skills are most installed?
Popular DevOps & Infra skills on SkillMD right now include cis-k8s-v1111-5.2.11, cis-k8s-v1111-5.2.12, cis-k8s-v1111-5.2.13. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do DevOps & Infra skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.