Techtide Kubernetes Live Network Architecture Mutation Guard

Guard live kubectl apply, patch, or create operations on Kubernetes networking *architecture* surface - Service spec (`internalTrafficPolicy`, `externalTrafficPolicy`, `topology-mode`, `trafficDistribution`), CoreDNS Corefile, NodeLocal DNSCache install, Gateway API resources (Gateway / HTTPRoute / GRPCRoute / TLSRoute / ReferenceGrant), and ClusterMesh peer Secrets. HARD REFUSE one-way doors (CNI replacement, kube-proxy mode swap, MTU change, Pod / Service CIDR resize, namespace deletion). Pre-flight `kubectl auth can-i` matrix against a least-privilege ServiceAccount before any write. Use only when an intentional architecture-level networking mutation is requested against a confirmed cluster target with a documented rollback path.

TechTideOhio Updated

File contents

TechTideOhio/techtide-harness-kit/tree/main/skills/kubernetes/techtide-kubernetes-live-network-architecture-mutation-guard commit 0a8f904352

Frequently asked questions

npx skillmds@latest add techtideohio/techtide-kubernetes-live-network-architecture-mutation-guard