DevOps & Infra
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
-
cyberstrikeus Skill Cis Docker V170 4 5Ensure Content trust for Docker is Enabled
Audited -
cyberstrikeus Skill Cis Docker V170 4 6Ensure that HEALTHCHECK instructions have been added to container images
Audited -
cyberstrikeus Skill Cis Docker V170 4 7Ensure update instructions are not used alone in Dockerfiles
Audited -
cyberstrikeus Skill Cis Docker V170 4 8Ensure setuid and setgid permissions are removed
Audited -
cyberstrikeus Skill Cis Docker V170 4 9Ensure that COPY is used instead of ADD in Dockerfiles
Audited -
cyberstrikeus Skill Cis Docker V170 5 1Ensure swarm mode is not Enabled, if not needed
Audited -
cyberstrikeus Skill Cis Docker V170 5 2Ensure that, if applicable, an AppArmor Profile is enabled
Audited -
cyberstrikeus Skill Cis Docker V170 5 3Ensure that, if applicable, SELinux security options are set
Audited -
cyberstrikeus Skill Cis Docker V170 5 4Ensure that Linux kernel capabilities are restricted within containers
Audited -
cyberstrikeus Skill Cis Docker V170 5 5Ensure that privileged containers are not used
Audited -
cyberstrikeus Skill Cis Docker V170 5 6Ensure sensitive host system directories are not mounted on containers
Audited -
cyberstrikeus Skill Cis Docker V170 5 7Ensure sshd is not run within containers
Audited -
cyberstrikeus Skill Cis Docker V170 5 8Ensure privileged ports are not mapped within containers
Audited -
cyberstrikeus Skill Cis Docker V170 5 9Ensure that only needed ports are open on the container
Audited -
cyberstrikeus Skill Cis Docker V170 6 1Ensure that image sprawl is avoided
Audited -
cyberstrikeus Skill Cis Docker V170 6 2Ensure that container sprawl is avoided
Audited -
cyberstrikeus Skill Cis Docker V170 7 1Ensure that the minimum number of manager nodes have been created in a swarm
Audited -
cyberstrikeus Skill Cis Docker V170 7 2Ensure that swarm services are bound to a specific host interface
Audited -
cyberstrikeus Skill Cis Docker V170 7 3Ensure that all Docker swarm overlay networks are encrypted
Audited -
cyberstrikeus Skill Cis Docker V170 7 4Ensure that Docker's secret management commands are used for managing secrets in a swarm cluster
-
cyberstrikeus Skill Cis Docker V170 7 5Ensure that swarm manager is run in auto-lock mode
Audited -
cyberstrikeus Skill Cis Docker V170 7 6Ensure that the swarm manager auto-lock key is rotated periodically
Audited -
cyberstrikeus Skill Cis Docker V170 7 7Ensure that node certificates are rotated as appropriate
Audited -
cyberstrikeus Skill Cis Docker V170 7 8Ensure that CA certificates are rotated as appropriate
Audited -
cyberstrikeus Skill Cis Docker V170 7 9Ensure that management plane traffic is separated from data plane traffic
Audited -
cyberstrikeus Skill Cis Gke V170 3 1 1Ensure that the proxy kubeconfig file permissions are set to 644 or more restrictive (Automated)
-
cyberstrikeus Skill Cis Gke V170 3 1 2Ensure that the proxy kubeconfig file ownership is set to root:root (Automated)
-
cyberstrikeus Skill Cis Gke V170 3 1 3Ensure that the kubelet configuration file has permissions set to 644 (Automated)
Audited -
cyberstrikeus Skill Cis Gke V170 3 1 4Ensure that the kubelet configuration file ownership is set to root:root (Automated)
Audited -
cyberstrikeus Skill Cis Gke V170 3 2 1Ensure that the Anonymous Auth is Not Enabled Draft (Automated)
Audited -
cyberstrikeus Skill Cis Gke V170 3 2 2Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)
Audited -
cyberstrikeus Skill Cis Gke V170 3 2 3Ensure that a Client CA File is Configured (Automated)
-
cyberstrikeus Skill Cis Gke V170 3 2 4Ensure that the --read-only-port is disabled (Automated)
Audited -
cyberstrikeus Skill Cis Gke V170 3 2 5Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)
Audited -
cyberstrikeus Skill Cis Gke V170 3 2 6Ensure that the --make-iptables-util-chains argument is set to true (Automated)
Audited -
cyberstrikeus Skill Cis Gke V170 3 2 7Ensure that the --eventRecordQPS argument is set to 0 or a level which ensures appropriate event capture (Automated)
Audited
Frequently asked questions
What are DevOps & Infra agent skills?
DevOps agent skills automate the delivery side of software: CI/CD pipelines, Dockerfiles, infrastructure as code, releases, and incident checklists. A skill gives your AI agent the exact runbook to follow, so deployments and configs come out consistent every time.
Which DevOps & Infra skills are most installed?
Popular DevOps & Infra skills on SkillMD right now include cis-docker-v170-4.5, cis-docker-v170-4.6, cis-docker-v170-4.7. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do DevOps & Infra skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.