Security
cilium-network-policy-review
Use this skill for Cilium network policy review across Kubernetes NetworkPolicy, CiliumNetworkPolicy, and CiliumClusterwideNetworkPolicy formats, including L7 policy via Envoy, Clu…
Documentation
opensourcefaq
Answers deep technical questions about open source projects and outputs illustrated Markdown articles. Triggers on queries about PostgreSQL, Redis, Kafka, Kubernetes, ClickHouse, F…
DevOps
forge-kubernetes
Production-grade Kubernetes manifests with pinned images, resource requests plus memory limits, securityContext settings, readiness probes, PodDisruptionBudgets, NetworkPolicy, ext…
DevOps
ovhcloud-maestro
Classify incoming OVHcloud requests by domain and route to the narrowest qualified specialist agent. Use when the user's task spans or is unclear across IAM, FinOps, Kubernetes, ne…
Security
cert-manager-issuer-trust-review
Reviews cert-manager PKI configuration for Kubernetes clusters, covering Issuer or ClusterIssuer scope, CertificateRequestPolicy coverage, SAN or duration risks, trust-manager bund…
DevOps
loom-karpenter
Kubernetes node autoscaling and cost optimization with Karpenter. Use for node provisioning, spot instance management, cluster right-sizing, node consolidation, NodePool/EC2NodeCla…
DevOps
loom-kustomize
Kubernetes-native configuration management with Kustomize. Use for environment-specific configs, resource patching (strategic merge, JSON6902), ConfigMap/Secret generation, overlay…
DevOps
deploy-to-kubernetes
Deploys applications to Kubernetes clusters using kubectl manifests for Deployments, Services, ConfigMaps, Secrets, and Ingress. Supports health checks, resource limits, rolling up…
DevOps
oops
Deploy applications to Kubernetes via OOPS PaaS using the Python CLI. Use when deploying, releasing, or shipping apps to OOPS, creating new apps, inspecting pipelines, or configuri…
Security
policy-opa
Enforce security and compliance policies as code with Open Policy Agent. Validates Kubernetes admission policies, supports SOC2, PCI-DSS, GDPR, and HIPAA frameworks, tests Rego pol…
DevOps
optimize-cloud-costs
Implement Kubernetes cost optimization using visibility tools, right-sizing, autoscaling, spot instances, and resource quotas. Apply when cloud spend rises without matching busines…
DevOps
ionos-kubernetes-platform-operator
Reviews IONOS managed Kubernetes cluster and node pool settings including readiness, sizing, autoscaling, workload placement, PodDisruptionBudgets, upgrades, and region selection. …
DevOps
pyroscope
Deploy and operate Grafana Pyroscope for continuous profiling on Kubernetes: install via Helm, profile Go/Java/Python/.NET/Ruby/Node.js workloads, configure storage, link traces to…
DevOps
olares-cluster
Provides per-user Kubernetes visibility into Olares clusters via ControlHub. Supports read operations on pods, workloads, namespaces, nodes, and middleware plus confirmed mutations…
DevOps
physical-ai-infrastructure-setup-and-resilient-scaling
Set up, scale, validate, and harden NVIDIA Physical AI infrastructure across MicroK8s or Azure AKS for synthetic data workflows, including cluster provisioning, inference endpoints…
Security
kyverno-policy-review
Review Kyverno policies across ValidatingPolicy, MutatingPolicy, GeneratingPolicy, DeletingPolicy, and ImageValidatingPolicy. Assess safety, exceptions, enforcement mode, CEL migra…
DevOps
dozzle-docker-log-viewer
Lightweight web-based real-time log viewer for Docker containers. Supports standalone Docker, Swarm, and Kubernetes with fuzzy search, regex/SQL queries, multi-host mode, and split…
DevOps
open-forge
Self-host open-source apps on user infrastructure including VMs, VPS, Raspberry Pi, localhost, Kubernetes, or PaaS. Guide through provisioning, DNS, TLS, SMTP, and hardening via ph…
DevOps
loom-kubernetes
Kubernetes deployment, cluster architecture, security, and operations. Use for manifests, Helm charts, RBAC, network policies, operators/CRDs, PodSecurityStandards, troubleshooting…
DevOps
service-mesh-expert
Expert service mesh architect specializing in Istio, Linkerd, and cloud-native networking patterns. Masters traffic management, security policies, observability integration, and mu…
AI / ML
vllm-configuration
Complete vLLM configuration guide including YAML format, CLI precedence, environment variable catalog, air-gapped deployment recipes, and common pitfalls around host IP, Kubernetes…
Security
kubernetes-pod-security-admission-review
Reviews Kubernetes Pod Security Admission namespace labels across privileged, baseline, and restricted profiles. Evaluates enforce/audit/warn modes, version pinning, and migration …
DevOps
velero-backup-restore-guard
Guard Velero backup schedules, restore operations, BackupStorageLocation changes, and snapshot settings. Activate on restore requests, Schedule deletions, BSL default changes, or r…
DevOps
review-cicd
Audit CI/CD pipelines and deployment reliability when configs, Dockerfiles, Kubernetes manifests, or workflows change. Checks build integrity, environment parity, secret handling, …
Security
aws-private-ca-issuer-review
Reviews AWS ACM Private CA issuer configurations for cert-manager, including AWSPCAIssuer, AWSPCAClusterIssuer, IRSA policy, certificate template ARNs, CRL configuration, and cross…
DevOps
ovhcloud-kubernetes-platform-operator
Reviews OVHcloud Managed Kubernetes cluster lifecycle, node pools, autoscaling, upgrades, taints, network policies, RBAC, and security posture. Supports Terraform IaC review and op…
DevOps
argocd-image-updater
Automates container image updates for Argo CD-managed Kubernetes workloads. Supports semver, digest, newest-build, and alphabetical strategies plus git write-back and ImageUpdater …
AI / ML
vllm-deployment
Guidance for authoring and reviewing vLLM Kubernetes manifests, Docker/Podman pods, and OpenShift ServingRuntimes, including cache mounts, probes, HF_TOKEN handling, and MoE deploy…
DevOps
gather_eks_state
Gather Kubernetes cluster state for specified resources in a namespace, including pod status, events, descriptions, logs, and node conditions while handling unreachable API servers…
DevOps
deploying-applications
Deployment patterns from Kubernetes to serverless and edge functions, covering CI/CD setup and infrastructure management across Kubernetes, serverless platforms, edge runtimes, and…
DevOps
loom-argocd
Implement GitOps continuous delivery with Argo CD for Kubernetes. Covers declarative workflows, application sync and rollback, multi-cluster deployments, and progressive delivery a…
DevOps
oci-devops-container-platform-engineer
Engineer and review OCI DevOps, OKE, OCIR, build/deploy pipelines, Kubernetes platform, and container workflows. Covers cluster inspection, CI/CD IAM, deployment safety, and image …
DevOps
configure-ingress-networking
Configure Kubernetes Ingress Networking with NGINX Ingress Controller and cert-manager for automated TLS, path-based routing, rate limiting, and multi-domain hosting with SSL termi…
Security
kubernetes-pod-spec-review
Audits Kubernetes Pod, Deployment, or StatefulSet specs for correctness, security posture, and production readiness. Validates manifests against best practices and operational stan…
DevOps
rancher-upgrade
Plan and sequence community Rancher upgrades across air-gapped multi-cluster fleets, covering release models, KDM support matrices, cross-cluster ordering, and embedded-CAPI migrat…
DevOps
adobe-load-scale
Implement load testing, auto-scaling, and capacity planning for Adobe API integrations using k6 scripts and Kubernetes HPA configuration targeting Firefly, PDF, and Photoshop servi…
DevOps
loom-fluxcd
Use Flux CD for GitOps continuous delivery on Kubernetes including declarative deployments, Helm automation, Kustomize overlays, image updates, multi-tenancy, and Git-based workflo…
Security
cdk-escape
Container escape and penetration testing toolkit. Assesses Docker and Kubernetes environments for escape paths, privilege escalation, and lateral movement after gaining shell acces…
DevOps
container-deployment
Manages containerization and deployment using Docker, Kubernetes, and cloud platforms. Handles image builds, registry publishing, orchestration, and infrastructure-as-code pipeline…
AI / ML
sglang-model-gateway
SGLang Model Gateway Rust router for vLLM/SGLang workers on Kubernetes. Supports gRPC and HTTP backends, multiple routing policies, service discovery, and cache-aware load balancin…
DevOps
docker-k8s
Applies security-first containerization and orchestration using Docker multi-stage builds, Kubernetes zero-trust deployments, GitOps workflows, and CNCF-aligned production patterns…
DevOps
gcp-gke-cluster-setup
Set up and configure Google Kubernetes Engine clusters for production use, choosing between Autopilot and Standard modes, configuring networking, node pools, and security hardening…
DevOps
setup-local-kubernetes
Set up a local Kubernetes environment using kind, k3d, or minikube. Handles cluster creation, ingress, local registry, and integration with Skaffold or Tilt for fast rebuild loops.
DevOps
vllm-serving-setup
Design and deployment patterns for vLLM 0.18.2 inference on EKS using PagedAttention, Multi-LoRA, FP8 KV cache, chunked prefill, and continuous batching with Helm and HPA examples.
DevOps
argo-cd-apps
Author and maintain Argo CD Application and ApplicationSet manifests for GitOps, covering source types, sync policies, generators, Progressive Sync, RBAC, and GitOps repo layouts.
Security
coreweave-security-basics
Secure CoreWeave deployments using RBAC, network policies, and secrets management. Apply when hardening GPU workloads, controlling model access, or setting up namespace isolation.
DevOps
gateway-api
Kubernetes Gateway API configuration. Installs Envoy Gateway, configures Gateway and HTTPRoute, sets TLS/HTTPS, and manages traffic routing, weight splitting, and header matching.
DevOps
gcp-gke-troubleshooting
Diagnose and resolve common GKE issues including pod failures, networking problems, database connection errors, and Pub/Sub message processing with systematic debugging workflows.
DevOps
argocd
Manage GitOps continuous delivery for Kubernetes with ArgoCD Applications, ApplicationSets, Helm/Kustomize deployments, sync policies, RBAC, and private repository configuration.
DevOps
argocd-gitops-sync-automator
Automates ArgoCD application synchronization using REST/gRPC API and argocd-autopilot CLI. Manages ApplicationSets, sync waves, and health assessments for Kubernetes deployments.
DevOps
regenerate-helm-chart-readmes-from-values-and-comments-before-re
Rebuilds Helm chart READMEs from Chart.yaml, values.yaml, and inline comments using helm-docs. Surfaces changed tables, missing descriptions, and drift in a review-friendly diff.
DevOps
deepgram-deploy-integration
Deploy Deepgram integrations to production environments. Use when deploying to cloud platforms, configuring containers, or setting up Deepgram in Docker/Kubernetes/serverless.
DevOps
loom-crossplane
Manage cloud infrastructure via Crossplane and Kubernetes APIs. Apply to internal platform APIs, composite resources, XRDs, compositions, claims, and multi-cloud provisioning.
DevOps
ring:dev-helm
Creates and maintains Helm charts following Lerian conventions. Enforces standardized structure, values organization, templates, security defaults, and dependency management.
DevOps
alibabacloud-nginx-ingress-to-api-gateway
Convert Kubernetes nginx Ingress YAML to Alibaba Cloud APIG resources, classify annotation compatibility, map plugins, and generate migration reports without cluster access.
Security
kube-audit-kit
Performs read-only Kubernetes security audits by exporting resources, sanitizing metadata, grouping applications by topology, and generating PSS/NSA-compliant audit reports.
DevOps
oraclecloud-deploy-integration
Deploy containers to OCI using OKE (Kubernetes) or Container Instances. Use when deploying applications to Oracle Cloud, pushing images to OCIR, or configuring OKE clusters.
DevOps
tailscale-k8s
Deploys Tailscale inside Kubernetes pods with persistent identity, SSH host keys, RBAC support, restart resilience without re-registration, and API-driven device management.
DevOps
check-helm
Checks Helm Chart files for NFR-002 compliance: SecurityContext, NetworkPolicies, Resource Limits, Health Probes, StatefulSet/Deployment distinction, and PVC configuration.
DevOps
kfl
Provides the KFL2 reference and must be loaded before writing or suggesting any Kubeshark filter expressions. Prevents silent failures from incorrect syntax or field names.
Showing the top 60 of 606. See the full list →