DevOps-Security-Agent-Skills
A large base of DevOps, security, infrastructure and compliance skills for AI agents
Low risk
We rate an entry low when it mostly gives the agent instructions and reference material.
Why this level
- The skills are references and practices and do not perform operations
Install
In your terminal, with SkillFoxx CLI
npx skillfoxx add skills/devops-security-agent-skillsDetects the agents on your machine, checks the risk and pins the version.
Other ways to install
Assembled automatically, review before installing.
Run in a terminal in the project folder
npx skills add bagelhole/devops-security-agent-skills --skill audit-logging aws-cloudtrail azure-monitor-audit gcp-audit-logs business-continuity disaster-recovery incident-management runbook-creation fedramp-compliance gdpr-compliance hipaa-compliance iso27001-compliance pci-dss-compliance soc2-compliance access-review asset-inventory change-management policy-as-code vendor-management agent-evals agent-observability ai-pipeline-orchestration ai-sre-incident-response llm-caching llm-cost-optimization llmops-platform-engineering model-registry-governance rag-observability-evals azure-devops circleci github-actions gitlab-ci jenkins container-registries docker-compose docker-management podman devcontainers-nix alerting-oncall datadog ebpf-observability elk-stack loki-logging new-relic opentelemetry prometheus-grafana sre-dashboards argocd-gitops helm-charts kubernetes-ops kustomize model-serving-kubernetes openshift platform-engineering blue-green-deploy feature-flags git-workflow semantic-versioning aws-cost-optimization aws-ec2 aws-ecs-fargate aws-iam aws-lambda aws-rds aws-s3 aws-vpc cloudformation terraform-aws arm-templates azure-aks azure-functions azure-networking azure-sql azure-vms terraform-azure gcp-cloud-functions gcp-cloud-sql gcp-compute gcp-gke gcp-networking terraform-gcp cloudflare-pages cloudflare-r2 cloudflare-workers cloudflare-zero-trust database-backups mongodb mysql planetscale postgresql redis vector-database-ops opentofu-migration identity-access-management mdm-device-management saas-security-posture startup-it-troubleshooting gpu-kubernetes-operations llm-fine-tuning llm-inference-scaling mac-mini-llm-lab multi-tenant-llm-hosting ollama-stack openclaw-local-mac-mini openclaw-security-hardening rag-infrastructure vllm-server ai-inference-service-mesh cdn-setup dns-management llm-gateway load-balancing reverse-proxy service-mesh convex-backend firebase-app-platform vercel-deployments gpu-server-management linux-administration performance-tuning ssh-configuration systemd-services user-management windows-server backup-recovery block-storage nfs-storage object-storage ai-agent-security ai-coding-agent-guardrails ai-red-teaming ai-security-hardening llm-app-security mcp-server-security model-supply-chain-security prompt-injection-defense cis-benchmarks container-hardening kubernetes-hardening linux-hardening openclaw-deployment-hardening windows-hardening firewall-config ssl-tls-management vpn-setup waf-setup zero-trust incident-response penetration-testing security-automation threat-modeling container-scanning dast-scanning dependency-scanning sast-scanning sbom-supply-chain supply-chain-attack-response vulnerability-scanning aws-secrets-manager azure-keyvault gcp-secret-manager hashicorp-vault sops-encryption -a claude-code -yThe skills tool installs the current version from the repository. Add the -g flag to use the skill in every project.
Run in a terminal in the project folder
npx skills add bagelhole/devops-security-agent-skills --skill audit-logging aws-cloudtrail azure-monitor-audit gcp-audit-logs business-continuity disaster-recovery incident-management runbook-creation fedramp-compliance gdpr-compliance hipaa-compliance iso27001-compliance pci-dss-compliance soc2-compliance access-review asset-inventory change-management policy-as-code vendor-management agent-evals agent-observability ai-pipeline-orchestration ai-sre-incident-response llm-caching llm-cost-optimization llmops-platform-engineering model-registry-governance rag-observability-evals azure-devops circleci github-actions gitlab-ci jenkins container-registries docker-compose docker-management podman devcontainers-nix alerting-oncall datadog ebpf-observability elk-stack loki-logging new-relic opentelemetry prometheus-grafana sre-dashboards argocd-gitops helm-charts kubernetes-ops kustomize model-serving-kubernetes openshift platform-engineering blue-green-deploy feature-flags git-workflow semantic-versioning aws-cost-optimization aws-ec2 aws-ecs-fargate aws-iam aws-lambda aws-rds aws-s3 aws-vpc cloudformation terraform-aws arm-templates azure-aks azure-functions azure-networking azure-sql azure-vms terraform-azure gcp-cloud-functions gcp-cloud-sql gcp-compute gcp-gke gcp-networking terraform-gcp cloudflare-pages cloudflare-r2 cloudflare-workers cloudflare-zero-trust database-backups mongodb mysql planetscale postgresql redis vector-database-ops opentofu-migration identity-access-management mdm-device-management saas-security-posture startup-it-troubleshooting gpu-kubernetes-operations llm-fine-tuning llm-inference-scaling mac-mini-llm-lab multi-tenant-llm-hosting ollama-stack openclaw-local-mac-mini openclaw-security-hardening rag-infrastructure vllm-server ai-inference-service-mesh cdn-setup dns-management llm-gateway load-balancing reverse-proxy service-mesh convex-backend firebase-app-platform vercel-deployments gpu-server-management linux-administration performance-tuning ssh-configuration systemd-services user-management windows-server backup-recovery block-storage nfs-storage object-storage ai-agent-security ai-coding-agent-guardrails ai-red-teaming ai-security-hardening llm-app-security mcp-server-security model-supply-chain-security prompt-injection-defense cis-benchmarks container-hardening kubernetes-hardening linux-hardening openclaw-deployment-hardening windows-hardening firewall-config ssl-tls-management vpn-setup waf-setup zero-trust incident-response penetration-testing security-automation threat-modeling container-scanning dast-scanning dependency-scanning sast-scanning sbom-supply-chain supply-chain-attack-response vulnerability-scanning aws-secrets-manager azure-keyvault gcp-secret-manager hashicorp-vault sops-encryption -a cursor -yThe skills tool installs the current version from the repository. Add the -g flag to use the skill in every project.
Run in a terminal in the project folder
npx skills add bagelhole/devops-security-agent-skills --skill audit-logging aws-cloudtrail azure-monitor-audit gcp-audit-logs business-continuity disaster-recovery incident-management runbook-creation fedramp-compliance gdpr-compliance hipaa-compliance iso27001-compliance pci-dss-compliance soc2-compliance access-review asset-inventory change-management policy-as-code vendor-management agent-evals agent-observability ai-pipeline-orchestration ai-sre-incident-response llm-caching llm-cost-optimization llmops-platform-engineering model-registry-governance rag-observability-evals azure-devops circleci github-actions gitlab-ci jenkins container-registries docker-compose docker-management podman devcontainers-nix alerting-oncall datadog ebpf-observability elk-stack loki-logging new-relic opentelemetry prometheus-grafana sre-dashboards argocd-gitops helm-charts kubernetes-ops kustomize model-serving-kubernetes openshift platform-engineering blue-green-deploy feature-flags git-workflow semantic-versioning aws-cost-optimization aws-ec2 aws-ecs-fargate aws-iam aws-lambda aws-rds aws-s3 aws-vpc cloudformation terraform-aws arm-templates azure-aks azure-functions azure-networking azure-sql azure-vms terraform-azure gcp-cloud-functions gcp-cloud-sql gcp-compute gcp-gke gcp-networking terraform-gcp cloudflare-pages cloudflare-r2 cloudflare-workers cloudflare-zero-trust database-backups mongodb mysql planetscale postgresql redis vector-database-ops opentofu-migration identity-access-management mdm-device-management saas-security-posture startup-it-troubleshooting gpu-kubernetes-operations llm-fine-tuning llm-inference-scaling mac-mini-llm-lab multi-tenant-llm-hosting ollama-stack openclaw-local-mac-mini openclaw-security-hardening rag-infrastructure vllm-server ai-inference-service-mesh cdn-setup dns-management llm-gateway load-balancing reverse-proxy service-mesh convex-backend firebase-app-platform vercel-deployments gpu-server-management linux-administration performance-tuning ssh-configuration systemd-services user-management windows-server backup-recovery block-storage nfs-storage object-storage ai-agent-security ai-coding-agent-guardrails ai-red-teaming ai-security-hardening llm-app-security mcp-server-security model-supply-chain-security prompt-injection-defense cis-benchmarks container-hardening kubernetes-hardening linux-hardening openclaw-deployment-hardening windows-hardening firewall-config ssl-tls-management vpn-setup waf-setup zero-trust incident-response penetration-testing security-automation threat-modeling container-scanning dast-scanning dependency-scanning sast-scanning sbom-supply-chain supply-chain-attack-response vulnerability-scanning aws-secrets-manager azure-keyvault gcp-secret-manager hashicorp-vault sops-encryption -a github-copilot -yThe skills tool installs the current version from the repository. Add the -g flag to use the skill in every project.
Run in a terminal in the project folder
npx skills add bagelhole/devops-security-agent-skills --skill audit-logging aws-cloudtrail azure-monitor-audit gcp-audit-logs business-continuity disaster-recovery incident-management runbook-creation fedramp-compliance gdpr-compliance hipaa-compliance iso27001-compliance pci-dss-compliance soc2-compliance access-review asset-inventory change-management policy-as-code vendor-management agent-evals agent-observability ai-pipeline-orchestration ai-sre-incident-response llm-caching llm-cost-optimization llmops-platform-engineering model-registry-governance rag-observability-evals azure-devops circleci github-actions gitlab-ci jenkins container-registries docker-compose docker-management podman devcontainers-nix alerting-oncall datadog ebpf-observability elk-stack loki-logging new-relic opentelemetry prometheus-grafana sre-dashboards argocd-gitops helm-charts kubernetes-ops kustomize model-serving-kubernetes openshift platform-engineering blue-green-deploy feature-flags git-workflow semantic-versioning aws-cost-optimization aws-ec2 aws-ecs-fargate aws-iam aws-lambda aws-rds aws-s3 aws-vpc cloudformation terraform-aws arm-templates azure-aks azure-functions azure-networking azure-sql azure-vms terraform-azure gcp-cloud-functions gcp-cloud-sql gcp-compute gcp-gke gcp-networking terraform-gcp cloudflare-pages cloudflare-r2 cloudflare-workers cloudflare-zero-trust database-backups mongodb mysql planetscale postgresql redis vector-database-ops opentofu-migration identity-access-management mdm-device-management saas-security-posture startup-it-troubleshooting gpu-kubernetes-operations llm-fine-tuning llm-inference-scaling mac-mini-llm-lab multi-tenant-llm-hosting ollama-stack openclaw-local-mac-mini openclaw-security-hardening rag-infrastructure vllm-server ai-inference-service-mesh cdn-setup dns-management llm-gateway load-balancing reverse-proxy service-mesh convex-backend firebase-app-platform vercel-deployments gpu-server-management linux-administration performance-tuning ssh-configuration systemd-services user-management windows-server backup-recovery block-storage nfs-storage object-storage ai-agent-security ai-coding-agent-guardrails ai-red-teaming ai-security-hardening llm-app-security mcp-server-security model-supply-chain-security prompt-injection-defense cis-benchmarks container-hardening kubernetes-hardening linux-hardening openclaw-deployment-hardening windows-hardening firewall-config ssl-tls-management vpn-setup waf-setup zero-trust incident-response penetration-testing security-automation threat-modeling container-scanning dast-scanning dependency-scanning sast-scanning sbom-supply-chain supply-chain-attack-response vulnerability-scanning aws-secrets-manager azure-keyvault gcp-secret-manager hashicorp-vault sops-encryption -a codex -yThe skills tool installs the current version from the repository. Add the -g flag to use the skill in every project.
Run in a terminal in the project folder
npx skills add bagelhole/devops-security-agent-skills --skill audit-logging aws-cloudtrail azure-monitor-audit gcp-audit-logs business-continuity disaster-recovery incident-management runbook-creation fedramp-compliance gdpr-compliance hipaa-compliance iso27001-compliance pci-dss-compliance soc2-compliance access-review asset-inventory change-management policy-as-code vendor-management agent-evals agent-observability ai-pipeline-orchestration ai-sre-incident-response llm-caching llm-cost-optimization llmops-platform-engineering model-registry-governance rag-observability-evals azure-devops circleci github-actions gitlab-ci jenkins container-registries docker-compose docker-management podman devcontainers-nix alerting-oncall datadog ebpf-observability elk-stack loki-logging new-relic opentelemetry prometheus-grafana sre-dashboards argocd-gitops helm-charts kubernetes-ops kustomize model-serving-kubernetes openshift platform-engineering blue-green-deploy feature-flags git-workflow semantic-versioning aws-cost-optimization aws-ec2 aws-ecs-fargate aws-iam aws-lambda aws-rds aws-s3 aws-vpc cloudformation terraform-aws arm-templates azure-aks azure-functions azure-networking azure-sql azure-vms terraform-azure gcp-cloud-functions gcp-cloud-sql gcp-compute gcp-gke gcp-networking terraform-gcp cloudflare-pages cloudflare-r2 cloudflare-workers cloudflare-zero-trust database-backups mongodb mysql planetscale postgresql redis vector-database-ops opentofu-migration identity-access-management mdm-device-management saas-security-posture startup-it-troubleshooting gpu-kubernetes-operations llm-fine-tuning llm-inference-scaling mac-mini-llm-lab multi-tenant-llm-hosting ollama-stack openclaw-local-mac-mini openclaw-security-hardening rag-infrastructure vllm-server ai-inference-service-mesh cdn-setup dns-management llm-gateway load-balancing reverse-proxy service-mesh convex-backend firebase-app-platform vercel-deployments gpu-server-management linux-administration performance-tuning ssh-configuration systemd-services user-management windows-server backup-recovery block-storage nfs-storage object-storage ai-agent-security ai-coding-agent-guardrails ai-red-teaming ai-security-hardening llm-app-security mcp-server-security model-supply-chain-security prompt-injection-defense cis-benchmarks container-hardening kubernetes-hardening linux-hardening openclaw-deployment-hardening windows-hardening firewall-config ssl-tls-management vpn-setup waf-setup zero-trust incident-response penetration-testing security-automation threat-modeling container-scanning dast-scanning dependency-scanning sast-scanning sbom-supply-chain supply-chain-attack-response vulnerability-scanning aws-secrets-manager azure-keyvault gcp-secret-manager hashicorp-vault sops-encryption -a gemini-cli -yThe skills tool installs the current version from the repository. Add the -g flag to use the skill in every project.
Run in a terminal in the project folder
npx skills add bagelhole/devops-security-agent-skills --skill audit-logging aws-cloudtrail azure-monitor-audit gcp-audit-logs business-continuity disaster-recovery incident-management runbook-creation fedramp-compliance gdpr-compliance hipaa-compliance iso27001-compliance pci-dss-compliance soc2-compliance access-review asset-inventory change-management policy-as-code vendor-management agent-evals agent-observability ai-pipeline-orchestration ai-sre-incident-response llm-caching llm-cost-optimization llmops-platform-engineering model-registry-governance rag-observability-evals azure-devops circleci github-actions gitlab-ci jenkins container-registries docker-compose docker-management podman devcontainers-nix alerting-oncall datadog ebpf-observability elk-stack loki-logging new-relic opentelemetry prometheus-grafana sre-dashboards argocd-gitops helm-charts kubernetes-ops kustomize model-serving-kubernetes openshift platform-engineering blue-green-deploy feature-flags git-workflow semantic-versioning aws-cost-optimization aws-ec2 aws-ecs-fargate aws-iam aws-lambda aws-rds aws-s3 aws-vpc cloudformation terraform-aws arm-templates azure-aks azure-functions azure-networking azure-sql azure-vms terraform-azure gcp-cloud-functions gcp-cloud-sql gcp-compute gcp-gke gcp-networking terraform-gcp cloudflare-pages cloudflare-r2 cloudflare-workers cloudflare-zero-trust database-backups mongodb mysql planetscale postgresql redis vector-database-ops opentofu-migration identity-access-management mdm-device-management saas-security-posture startup-it-troubleshooting gpu-kubernetes-operations llm-fine-tuning llm-inference-scaling mac-mini-llm-lab multi-tenant-llm-hosting ollama-stack openclaw-local-mac-mini openclaw-security-hardening rag-infrastructure vllm-server ai-inference-service-mesh cdn-setup dns-management llm-gateway load-balancing reverse-proxy service-mesh convex-backend firebase-app-platform vercel-deployments gpu-server-management linux-administration performance-tuning ssh-configuration systemd-services user-management windows-server backup-recovery block-storage nfs-storage object-storage ai-agent-security ai-coding-agent-guardrails ai-red-teaming ai-security-hardening llm-app-security mcp-server-security model-supply-chain-security prompt-injection-defense cis-benchmarks container-hardening kubernetes-hardening linux-hardening openclaw-deployment-hardening windows-hardening firewall-config ssl-tls-management vpn-setup waf-setup zero-trust incident-response penetration-testing security-automation threat-modeling container-scanning dast-scanning dependency-scanning sast-scanning sbom-supply-chain supply-chain-attack-response vulnerability-scanning aws-secrets-manager azure-keyvault gcp-secret-manager hashicorp-vault sops-encryption -a cline -yThe skills tool installs the current version from the repository. Add the -g flag to use the skill in every project.
Run in a terminal in the project folder
npx skills add bagelhole/devops-security-agent-skills --skill audit-logging aws-cloudtrail azure-monitor-audit gcp-audit-logs business-continuity disaster-recovery incident-management runbook-creation fedramp-compliance gdpr-compliance hipaa-compliance iso27001-compliance pci-dss-compliance soc2-compliance access-review asset-inventory change-management policy-as-code vendor-management agent-evals agent-observability ai-pipeline-orchestration ai-sre-incident-response llm-caching llm-cost-optimization llmops-platform-engineering model-registry-governance rag-observability-evals azure-devops circleci github-actions gitlab-ci jenkins container-registries docker-compose docker-management podman devcontainers-nix alerting-oncall datadog ebpf-observability elk-stack loki-logging new-relic opentelemetry prometheus-grafana sre-dashboards argocd-gitops helm-charts kubernetes-ops kustomize model-serving-kubernetes openshift platform-engineering blue-green-deploy feature-flags git-workflow semantic-versioning aws-cost-optimization aws-ec2 aws-ecs-fargate aws-iam aws-lambda aws-rds aws-s3 aws-vpc cloudformation terraform-aws arm-templates azure-aks azure-functions azure-networking azure-sql azure-vms terraform-azure gcp-cloud-functions gcp-cloud-sql gcp-compute gcp-gke gcp-networking terraform-gcp cloudflare-pages cloudflare-r2 cloudflare-workers cloudflare-zero-trust database-backups mongodb mysql planetscale postgresql redis vector-database-ops opentofu-migration identity-access-management mdm-device-management saas-security-posture startup-it-troubleshooting gpu-kubernetes-operations llm-fine-tuning llm-inference-scaling mac-mini-llm-lab multi-tenant-llm-hosting ollama-stack openclaw-local-mac-mini openclaw-security-hardening rag-infrastructure vllm-server ai-inference-service-mesh cdn-setup dns-management llm-gateway load-balancing reverse-proxy service-mesh convex-backend firebase-app-platform vercel-deployments gpu-server-management linux-administration performance-tuning ssh-configuration systemd-services user-management windows-server backup-recovery block-storage nfs-storage object-storage ai-agent-security ai-coding-agent-guardrails ai-red-teaming ai-security-hardening llm-app-security mcp-server-security model-supply-chain-security prompt-injection-defense cis-benchmarks container-hardening kubernetes-hardening linux-hardening openclaw-deployment-hardening windows-hardening firewall-config ssl-tls-management vpn-setup waf-setup zero-trust incident-response penetration-testing security-automation threat-modeling container-scanning dast-scanning dependency-scanning sast-scanning sbom-supply-chain supply-chain-attack-response vulnerability-scanning aws-secrets-manager azure-keyvault gcp-secret-manager hashicorp-vault sops-encryption -a roo -yThe skills tool installs the current version from the repository. Add the -g flag to use the skill in every project.
A fork of Roo Code, same .roo folders.
Run in a terminal in the project folder
npx skills add bagelhole/devops-security-agent-skills --skill audit-logging aws-cloudtrail azure-monitor-audit gcp-audit-logs business-continuity disaster-recovery incident-management runbook-creation fedramp-compliance gdpr-compliance hipaa-compliance iso27001-compliance pci-dss-compliance soc2-compliance access-review asset-inventory change-management policy-as-code vendor-management agent-evals agent-observability ai-pipeline-orchestration ai-sre-incident-response llm-caching llm-cost-optimization llmops-platform-engineering model-registry-governance rag-observability-evals azure-devops circleci github-actions gitlab-ci jenkins container-registries docker-compose docker-management podman devcontainers-nix alerting-oncall datadog ebpf-observability elk-stack loki-logging new-relic opentelemetry prometheus-grafana sre-dashboards argocd-gitops helm-charts kubernetes-ops kustomize model-serving-kubernetes openshift platform-engineering blue-green-deploy feature-flags git-workflow semantic-versioning aws-cost-optimization aws-ec2 aws-ecs-fargate aws-iam aws-lambda aws-rds aws-s3 aws-vpc cloudformation terraform-aws arm-templates azure-aks azure-functions azure-networking azure-sql azure-vms terraform-azure gcp-cloud-functions gcp-cloud-sql gcp-compute gcp-gke gcp-networking terraform-gcp cloudflare-pages cloudflare-r2 cloudflare-workers cloudflare-zero-trust database-backups mongodb mysql planetscale postgresql redis vector-database-ops opentofu-migration identity-access-management mdm-device-management saas-security-posture startup-it-troubleshooting gpu-kubernetes-operations llm-fine-tuning llm-inference-scaling mac-mini-llm-lab multi-tenant-llm-hosting ollama-stack openclaw-local-mac-mini openclaw-security-hardening rag-infrastructure vllm-server ai-inference-service-mesh cdn-setup dns-management llm-gateway load-balancing reverse-proxy service-mesh convex-backend firebase-app-platform vercel-deployments gpu-server-management linux-administration performance-tuning ssh-configuration systemd-services user-management windows-server backup-recovery block-storage nfs-storage object-storage ai-agent-security ai-coding-agent-guardrails ai-red-teaming ai-security-hardening llm-app-security mcp-server-security model-supply-chain-security prompt-injection-defense cis-benchmarks container-hardening kubernetes-hardening linux-hardening openclaw-deployment-hardening windows-hardening firewall-config ssl-tls-management vpn-setup waf-setup zero-trust incident-response penetration-testing security-automation threat-modeling container-scanning dast-scanning dependency-scanning sast-scanning sbom-supply-chain supply-chain-attack-response vulnerability-scanning aws-secrets-manager azure-keyvault gcp-secret-manager hashicorp-vault sops-encryption -a opencode -yThe skills tool installs the current version from the repository. Add the -g flag to use the skill in every project.
Install the set with npx skills add bagelhole/DevOps-Security-Agent-Skills and pick the skills you need. You can also clone the repository into the skills directory manually.
Other ways from the author
npx skills add bagelhole/DevOps-Security-Agent-SkillsInstalls skills into the agent directory; individual skills via --skill.
This is third-party code. Review the repository files before installing.
What it does
The set gives the agent practical DevOps and security knowledge: Kubernetes, Terraform, AWS, Azure and GCP clouds, secrets handling, container hardening, auditing and business continuity. The skills are grouped into compliance, devops, infrastructure and security sections, each described in a SKILL.md and usable by any agent that reads files. There are dedicated AI-security skills too: guardrails for coding agents, MCP server hardening and red teaming. It installs through the skills CLI for several agents at once or by cloning.
Who it is for. For DevOps engineers and security specialists working through an AI agent.
Good fit when
- You need Kubernetes, Terraform or cloud knowledge in the agent
- You need to harden containers, secrets or an MCP server
- You need auditing and compliance material
Not a fit when
- You need a runnable tool rather than reference knowledge
- The work is far from infrastructure and security
Example request
Review my Terraform and advise how to harden secrets handlingLimitations
The skills provide knowledge and practices but do not perform operations for you and do not replace vetted pipelines and policies. The material is in English. The full set is large, so install the skills you need.
How to disable. Remove the installed skills via the skills CLI or their folder from the agent's skills directory.
Security check
- The skills are references and practices and do not perform operations
README in short
The README describes a base of over a hundred DevOps, security, infrastructure and compliance skills for any file-reading agent. Installation goes through the skills CLI for several agents at once, individual skills via a skill flag, with a clone option too. The skills are laid out into compliance, devops, infrastructure and security sections, including AI and MCP security. MIT licensed.
SKILL.md
--- name: mcp-server-security description: Secure Model Context Protocol (MCP) servers with transport encryption, tool authorization, input validation, and audit logging for safe AI agent integrations. license: MIT metadata: author: devops-skills version: "1.0" --- # MCP Server Security Comprehensive hardening guide for Model Context Protocol (MCP) servers.
FAQ
Which agents does it work with?
Claude Code, Cursor, Codex, OpenCode, Cline and other agents that read skill files.
Can I install just one skill?
Yes, via the --skill flag in the skills CLI, for example kubernetes-ops.
Related
An MCP server built into the Netdata agent: metrics, logs, alerts and live process, service and container data for an AI assistant
GitHub's official MCP server: code, issues, pull requests, Actions and security alerts straight from the agent
Agent Skills for Google products
Agent Skills for Google products and technologies
Official Google skill collection for working with Google Cloud, BigQuery, GKE, ads and analytics from an agent
AWS's official MCP server suite: docs, IaC, containers, serverless, databases, cost and monitoring