DevOps & Infra
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
-
cyberstrikeus Skill Cis K8S V200 5 2 12Minimize the admission of containers which use HostPorts (Manual)
Audited -
cyberstrikeus Skill Cis Aks V170 2 1 1Enable audit Logs (Manual)
Audited -
cyberstrikeus Skill Cis Aks V170 3 1 1Ensure that the kubeconfig file permissions are set to 644 or more restrictive (Automated)
-
cyberstrikeus Skill Cis Aks V170 3 1 2Ensure that the kubelet kubeconfig file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 3 1 3Ensure that the azure.json file has permissions set to 644 or more restrictive (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 3 1 4Ensure that the azure.json file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 3 2 1Ensure that the --anonymous-auth argument is set to false (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 3 2 2Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 3 2 3Ensure that the --client-ca-file argument is set as appropriate (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 3 2 4Ensure that the --read-only-port is secured (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 3 2 5Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 3 2 6Ensure that the --make-iptables-util-chains argument is set to true (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 3 2 7Ensure that the --eventRecordQPS argument is set to 0 or a level which ensures appropriate event capture (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 3 2 8Ensure that the --rotate-certificates argument is not set to false (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 3 2 9Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 1 1Ensure that the cluster-admin role is only used where required (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 1 2Minimize access to secrets (Automated)
-
cyberstrikeus Skill Cis Aks V170 4 1 3Minimize wildcard use in Roles and ClusterRoles (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 1 4Minimize access to create pods (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 1 5Ensure that default service accounts are not actively used (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 1 6Ensure Service Account Tokens are only mounted where necessary (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 2 1Minimize the admission of privileged containers (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 2 2Minimize the admission of containers wishing to share the host process ID namespace (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 2 3Minimize the admission of containers wishing to share the host IPC namespace (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 2 4Minimize the admission of containers wishing to share the host network namespace (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 2 5Minimize the admission of containers with allowPrivilegeEscalation (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 4 1Ensure latest CNI version is used (Manual)
Audited -
cyberstrikeus Skill Cis Aks V170 4 4 2Ensure all Namespaces have Network Policies defined (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 4 5 1Prefer using secrets as files over secrets as environment variables (Automated)
-
cyberstrikeus Skill Cis Aks V170 4 5 2Consider external secret storage (Manual)
Audited -
cyberstrikeus Skill Cis Aks V170 4 6 1Create administrative boundaries between resources using namespaces (Manual)
Audited -
cyberstrikeus Skill Cis Aks V170 4 6 2Apply Security Context to Your Pods and Containers (Manual)
Audited -
cyberstrikeus Skill Cis Aks V170 4 6 3The default namespace should not be used (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 5 1 1Ensure Image Vulnerability Scanning using Microsoft Defender for Cloud (MDC) image scanning or a third party provider (Automated)
Audited -
cyberstrikeus Skill Cis Aks V170 5 1 2Minimize user access to Azure Container Registry (ACR) (Manual)
Audited -
cyberstrikeus Skill Cis Aks V170 5 1 3Minimize cluster access to read-only for Azure Container Registry (ACR) (Manual)
Audited
Frequently asked questions
What are DevOps & Infra agent skills?
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
Which DevOps & Infra skills are most installed?
Popular DevOps & Infra skills on SkillMD right now include cis-k8s-v200-5.2.12, cis-aks-v170-2.1.1, cis-aks-v170-3.1.1. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do DevOps & Infra skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.