security & testing向けのClaudeスキルを発見してください。105個のスキルを閲覧し、AIワークフローに最適な機能を見つけましょう。
Secures GitHub Actions workflows by implementing safe trigger patterns for pull requests and forks to prevent privilege escalation and secret exfiltration.
Implements 20 production-ready OPA Gatekeeper constraint templates for Kubernetes admission control and resource governance.
Implements secure credential management, storage hierarchies, and OIDC authentication patterns within GitHub Actions workflows.
Implements secure OAuth flows for GitHub Apps to enable user-context operations, device-based CLI authorization, and token management.
Analyzes threat models and secure deployment patterns for self-hosted GitHub Actions runners to prevent infrastructure compromise.
Deploys production-ready security and governance policies for Kubernetes using Kyverno and OPA Gatekeeper.
Guides a 90-day phased rollout of secure software development lifecycle controls and automated enforcement patterns.
Hardens Kubernetes production environments through runtime policy enforcement, image verification, and resource constraints using Kyverno.
Establishes essential SDLC security controls including secrets detection, branch protection, and commit verification to create a secure development environment.
Simplifies Kubernetes security and compliance by providing 28 production-ready Kyverno policy templates for admission control.
Guides the creation of structured chaos engineering experiments by defining hypotheses, success criteria, and blast radius controls.
Secures self-hosted GitHub Actions runners using OS-level hardening, network isolation, and credential protection to prevent infrastructure compromise.
Automates comprehensive security scanning by integrating SAST, dependency checks, and container vulnerability detection into CI/CD pipelines.
Enforces Kubernetes security policies using OPA to prevent privileged container execution and restrict dangerous Linux capabilities.
Automates the configuration of GitHub secret scanning and push protection to prevent sensitive credential leaks in development workflows.
Implements production-grade security controls for Google Kubernetes Engine using Pulumi and defense-in-depth patterns.
Enforces Kubernetes Pod Security Standards and privilege restrictions using Kyverno policies to secure containerized workloads.
Automates resilience testing and fault injection for Kubernetes clusters using Chaos Mesh and LitmusChaos patterns.
Implements secure-by-design architecture patterns for Kubernetes environments using zero-trust and defense-in-depth principles.
Aggregates distributed Kyverno policies into a unified enforcement layer using multi-stage OCI container builds.
Secures Kubernetes clusters by enforcing container image validation policies including registry allowlists, signatures, and vulnerability gates.
Implements least-privilege security for GitHub Actions by configuring explicit GITHUB_TOKEN permissions and reducing attack surfaces.
Optimizes software security postures by providing comprehensive guidance on passing all 18 OpenSSF Scorecard checks and implementing secure engineering practices.
Secures CI/CD pipelines with copy-pasteable patterns for SHA pinning, token permissions, and workflow hardening.
Streamlines security triage using objective metrics, CVSS interpretation, and decision trees to prioritize vulnerability remediation.
Eliminates security gaps by enforcing standardized Kyverno policies across local development, CI/CD pipelines, and Kubernetes runtime environments.
Implements automated GitHub branch protection patterns and drift detection to ensure robust organizational security compliance.
Provides standardized templates for detecting, containing, and remediating Kubernetes security incidents with guided decision trees.
Integrates SLSA provenance generation and dependency verification across Go, Node.js, and Python toolchains.
Enforces robust Kubernetes network security policies including namespace isolation, Ingress TLS requirements, and service exposure restrictions.
Scroll for more results...