Review CI/CD pipelines, runners, permissions, artifacts, caches, deployment gates, and token exposure.
原文语言:英语
菜单
这个仓库中的 skills
SkillsMP 已收集 domehahn/skil 中的 160 个 Skill。打开任一 Skill 可查看来源和详情。
domehahn/skil已展示 40 / 160 个已收集 Skill。
Review CI/CD pipelines, runners, permissions, artifacts, caches, deployment gates, and token exposure.
原文语言:英语
Review cloud naming, tags, ownership, cost centers, allowed services, regions, data classification, policy enforcement, and audit evidence.
原文语言:英语
Review cloud accounts or subscriptions, networks, IAM, logging, policies, baselines, guardrails, encryption, tagging, and tenant separation.
原文语言:英语
Review governance controls such as CODEOWNERS, branch protection, approvals, auditability, and policy compliance.
原文语言:英语
Review Dockerfiles, base images, user rights, capabilities, SBOM, image signing, distroless or slim images, CVEs, and runtime hardening.
原文语言:英语
Map technical measures to DORA, VAIT or BAIT migration needs, ISO 27001, BSI, internal policies, or MaRisk review expectations.
原文语言:英语
Plan coding work with minimal context, relevant file selection, risk awareness, rollback, and validation strategy.
原文语言:英语
Review dependencies, lockfiles, package managers, container images, actions, and supply-chain risks.
原文语言:英语
Review setup, local development, error messages, Makefiles or scripts, onboarding, tooling consistency, and practicality for teams.
原文语言:英语
Assess maturity across plan, code, build, test, release, deploy, and operate with automation, security gates, ownership, and feedback loops.
原文语言:英语
Review documentation freshness, ownership, review cycles, approvals, versioning, validity, and traceability.
原文语言:英语
Create and update README files, ADRs, setup guides, API docs, runbooks, and operational documentation.
原文语言:英语
Review DORA readiness for ICT risk management, resilience testing, incidents, third-party risk, roles, policies, evidence, and auditability.
原文语言:英语
Create auditable evidence packages from tickets, pipeline results, test reports, approvals, scans, and architecture information.
原文语言:英语
Review cloud costs, budgets, rightsizing, reserved or committed usage, anomalies, showback or chargeback, and team cost transparency.
原文语言:英语
Review Argo CD or Flux setups, sync policies, drift detection, promotion, rollback, app-of-apps, secrets, cluster access, and deployment governance.
原文语言:英语
Review Terraform, Kubernetes, Helm, Kustomize, GitOps reconciliation, promotion, and environment safety.
原文语言:英语
Review ICT incident classification, escalation, documentation, reportability, timelines, responsibilities, templates, and communication chains.
原文语言:英语
Review ICT risks, protection needs, criticality, controls, residual risks, treatment, and recurring reassessment.
原文语言:英语
Review cloud, SaaS, outsourcing, subcontractors, contracts, exit strategies, concentration risks, and DORA information-register readiness.
原文语言:英语
Review IAM, roles, service accounts, groups, tokens, OIDC federation, GitLab or GitHub permissions, cloud rights, and privilege-escalation paths.
原文语言:英语
Support incident analysis, timeline creation, root cause analysis, impact assessment, corrective actions, and follow-up issues.
原文语言:英语
Review Kubernetes clusters, namespaces, RBAC, NetworkPolicies, Pod Security, admission controllers, resource limits, secrets, ingress, tenancy, and upgrades.
原文语言:英语
Review GenAI workloads for prompt injection, tool permissions, data exfiltration, RAG sources, sensitive prompt logging, evals, guardrails, and model access.
原文语言:英语
Review database migrations, schema changes, breaking changes, rollback ability, backward compatibility, and zero-downtime deployments.
原文语言:英语
Review model versioning, training data, bias, drift, monitoring, approvals, reproducibility, model registry, and deployment gates.
原文语言:英语
Review logging, metrics, tracing, health checks, alerts, dashboards, runbooks, and operational readiness.
原文语言:英语
Review backup and restore, failover, disaster recovery, restart procedures, crisis exercises, scenario tests, and lessons learned.
原文语言:英语
Review exit plans, data return, provider transitions, emergency operations, suboutsourcing, cloud dependencies, and business impact.
原文语言:英语
Review load behavior, bottlenecks, caching, database access, queue behavior, scaling, timeouts, and resource limits.
原文语言:英语
Design and review secure CI/CD pipelines with isolated runners, minimal rights, OIDC, signed artifacts, protected environments, and approval gates.
原文语言:英语
Create and review policies for OPA/Rego, Kyverno, GitLab Policies, Conftest, Checkov, Terraform, Kubernetes, and CI/CD gates.
原文语言:英语
Review GitLab Security Policies, OPA/Rego, Kyverno, Conftest, Sentinel, admission policies, compliance pipelines, and central guardrails.
原文语言:英语
Create and update policies, standards, procedures, and control descriptions.
原文语言:英语
Review privacy, personal data, data classification, deletion concepts, purpose limitation, GDPR risks, and sensitive-data logging.
原文语言:英语
Assess release readiness, rollback, migrations, feature flags, monitoring, documentation, and breaking changes.
原文语言:英语
Analyze requirements, user stories, acceptance criteria, constraints, risks, and open questions before implementation.
原文语言:英语
Review timeouts, retries, circuit breakers, failover, backpressure, degraded modes, and resilience behavior.
原文语言:英语
Document and assess conscious risk decisions, impact and likelihood, expiry dates, and compensating measures.
原文语言:英语
Create and review runbooks, operating instructions, incident playbooks, escalation paths, restart procedures, and checklists.
原文语言:英语