DevOps & Infra
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
-
cyberstrikeus Skill Cis K8S V1110 1 1 17Ensure that the controller-manager.conf file permissions are set to 600 or more restrictive (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1110 1 1 18Ensure that the controller-manager.conf file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1110 1 1 19Ensure that the Kubernetes PKI directory and file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1110 1 1 20Ensure that the Kubernetes PKI certificate file permissions are set to 644 or more restrictive (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1110 1 1 21Ensure that the Kubernetes PKI key file permissions are set to 600 (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1110 1 2 29Ensure that the API Server only makes use of Strong Cryptographic Ciphers (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1110 1 2 30Ensure that the --service-account-extend-token-expiration parameter is set to false (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1110 4 1 10If the kubelet config.yaml configuration file is being used validate file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1110 4 2 10Ensure that the --rotate-certificates argument is not set to false (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1110 4 2 11Verify that the RotateKubeletServerCertificate argument is set to true (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1110 4 2 12Ensure that the Kubelet only makes use of Strong Cryptographic Ciphers (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1110 4 2 13Ensure that a limit is set on pod PIDs (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1110 4 2 14Ensure that the --seccomp-default parameter is set to true (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1110 4 2 15Ensure that the --IPAddressDeny is set to any (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1110 5 2 10Minimize the admission of containers with capabilities assigned (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1110 5 2 11Minimize the admission of Windows HostProcess Containers (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1110 5 2 12Minimize the admission of HostPath volumes (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1110 5 2 13Minimize the admission of containers which use HostPorts (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1111 1 1 10Ensure that the Container Network Interface file ownership is set to root:root (Manual)
Audited -
cyberstrikeus Skill Cis K8S V1111 1 1 11Ensure that the etcd data directory permissions are set to 700 or more restrictive (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1111 1 1 12Ensure that the etcd data directory ownership is set to etcd:etcd (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1111 1 1 13Ensure that the default administrative credential file permissions are set to 600 (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1111 1 1 14Ensure that the default administrative credential file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1111 1 1 15Ensure that the scheduler.conf file permissions are set to 600 or more restrictive (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1111 1 1 16Ensure that the scheduler.conf file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis K8S V1111 1 1 17Ensure that the controller-manager.conf file permissions are set to 600 or more restrictive (Automated)
Audited -
cyberstrikeus Skill Cis K8S V200 2 1Ensure that the --cert-file and --key-file arguments are set as appropriate (Automated)
Audited -
cyberstrikeus Skill Cis K8S V200 2 2Ensure that the --client-cert-auth argument is set to true (Automated)
Audited -
cyberstrikeus Skill Cis K8S V200 2 3Ensure that the --auto-tls argument is not set to true (Automated)
Audited -
cyberstrikeus Skill Cis K8S V200 2 4Ensure that the --peer-cert-file and --peer-key-file arguments are set as appropriate (Automated)
Audited -
cyberstrikeus Skill Cis K8S V200 2 5Ensure that the --peer-client-cert-auth argument is set to true (Automated)
Audited -
cyberstrikeus Skill Cis K8S V200 2 6Ensure that the --peer-auto-tls argument is not set to true (Automated)
Audited -
cyberstrikeus Skill Cis K8S V200 2 7Ensure that a unique Certificate Authority is used for etcd (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 2 1Ensure that the --cert-file and --key-file arguments are set as appropriate (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 2 2Ensure that the --client-cert-auth argument is set to true (Manual)
Audited -
cyberstrikeus Skill Cis Ocp V160 2 3Ensure that the --auto-tls argument is not set to true (Manual)
Audited
Frequently asked questions
What are DevOps & Infra agent skills?
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
Which DevOps & Infra skills are most installed?
Popular DevOps & Infra skills on SkillMD right now include cis-k8s-v1110-1.1.17, cis-k8s-v1110-1.1.18, cis-k8s-v1110-1.1.19. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do DevOps & Infra skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.