Skip to main content
Run any Skill in Manus
with one click

namespace-backfill

Stars4
Forks2
UpdatedJuly 1, 2026 at 03:03

Fix namespace-envelope gaps as config-as-data with the cub-namespace CLI — stamp pod-security defaults on a Namespace Unit (apply-envelope) and clone a base envelope's default-deny NetworkPolicy + baseline RBAC into an existing Space, re-homed with set-namespace (backfill). Use for "add pod-security labels to namespace X", "backfill the default-deny / RBAC into apptique-prod", "bring this namespace up to the envelope standard", "fix the missing-pod-security / missing-default-deny findings". Dry-run by default; requires --commit --change-desc. Not for read-only checks (use namespace-audit / namespace-findings) or enforcement Triggers (a later skill).

Installation

Install with Codex or Claude Copy this prompt, paste it into Codex, Claude, or another assistant, and let it review the skill page and install it for you.

File Explorer
2 files
SKILL.md
readonly