All skills
jeffallan avatar

/devops-engineer

@fb67815
by jeffallanjeffallan/claude-skills12k stars
1,127

Creates Dockerfiles, configures CI/CD pipelines, writes Kubernetes manifests, and generates Terraform/Pulumi infrastructure templates. Handles deployment automation, GitOps configuration, incident response runbooks, and internal developer platform tooling. Use when setting up CI/CD pipelines, containerizing applications, managing infrastructure as code, deploying to Kubernetes clusters, configuring cloud platforms, automating releases, or responding to production incidents. Invoke for pipelines, Docker, Kubernetes, GitOps, Terraform, GitHub Actions, on-call, or platform engineering.

Use this Skill: https://skilld.dev/gh/jeffallan/claude-skills/devops-engineer

This session only. Nothing lands on disk.

referencesdocker-patterns.md

≈679 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Docker Patterns

Multi-stage Dockerfile (Node.js)

# Build stage
FROM node:20-alpine AS builder
WORKDIR /app
COPY package*.json ./
RUN npm ci --only=production && npm cache clean --force
COPY . .
RUN npm run build

# Production stage
FROM node:20-alpine AS runner
WORKDIR /app
ENV NODE_ENV=production
RUN addgroup -g 1001 -S nodejs && adduser -S nodejs -u 1001
COPY --from=builder --chown=nodejs:nodejs /app/dist ./dist
COPY --from=builder --chown=nodejs:nodejs /app/node_modules ./node_modules
USER nodejs
EXPOSE 3000
HEALTHCHECK --interval=30s --timeout=3s --start-period=5s \
  CMD wget -qO- http://localhost:3000/health || exit 1
CMD ["node", "dist/main.js"]

Multi-stage Dockerfile (Python)

FROM python:3.12-slim AS builder
WORKDIR /app
RUN pip install --no-cache-dir poetry
COPY pyproject.toml poetry.lock ./
RUN poetry export -f requirements.txt --output requirements.txt
RUN pip wheel --no-cache-dir --wheel-dir /wheels -r requirements.txt

FROM python:3.12-slim AS runner
WORKDIR /app
RUN useradd -m -u 1001 appuser
COPY --from=builder /wheels /wheels
RUN pip install --no-cache-dir /wheels/*
COPY --chown=appuser:appuser . .
USER appuser
EXPOSE 8000
HEALTHCHECK --interval=30s --timeout=3s \
  CMD python -c "import urllib.request; urllib.request.urlopen('http://localhost:8000/health')"
CMD ["uvicorn", "main:app", "--host", "0.0.0.0", "--port", "8000"]

Docker Compose (Development)

version: '3.8'
services:
  app:
    build:
      context: .
      target: builder  # Use dev stage
    volumes:
      - .:/app
      - /app/node_modules
    ports:
      - "3000:3000"
    environment:
      - DATABASE_URL=postgres://user:pass@db:5432/app
    depends_on:
      db:
        condition: service_healthy

  db:
    image: postgres:16-alpine
    environment:
      POSTGRES_USER: user
      POSTGRES_PASSWORD: pass
      POSTGRES_DB: app
    volumes:
      - postgres_data:/var/lib/postgresql/data
    healthcheck:
      test: ["CMD-SHELL", "pg_isready -U user -d app"]
      interval: 5s
      timeout: 5s
      retries: 5

volumes:
  postgres_data:

Security Best Practices

Practice Implementation
Non-root user USER nodejs or USER 1001
Minimal base image Use -alpine or -slim variants
No secrets in image Use runtime env vars or secrets
Pin versions FROM node:20.10.0-alpine not latest
Scan images docker scout, trivy, snyk
Health checks HEALTHCHECK instruction
.dockerignore Exclude node_modules, .git, .env

.dockerignore Template

node_modules
.git
.env*
*.md
Dockerfile*
docker-compose*
.dockerignore
coverage
.nyc_output

Source: SKILL.md on GitHub

2 alerts17d5 checks · Risk CRITICAL
  • Gen Agent Trust Hub17d

    This skill provides standard DevOps engineering patterns including CI/CD pipelines, containerization, and infrastructure as code. While it utilizes powerful system tools and cloud CLI commands, these are standard for the DevOps role. The external documentation link resides on the author's personal domain. Automated scanner alerts regarding the skill file and documentation URL appear to be false positives triggered by the legitimate use of shell scripts and system utilities.

  • Socket17d

    No alerts

  • Snyk17d

    Risk: LOW · No issues

  • Runlayer6mo

    6/9 files flagged

  • ZeroLeaks5mo

    Score: 93/100 · 2 sections analyzed

Signed by skilld at fb67815. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 2 months ago.

Steadyupdated 2 months ago
Other metadata
metadata
{
  "author": "https://github.com/Jeffallan",
  "version": "1.2.0",
  "domain": "devops",
  "triggers": "DevOps, CI/CD, deployment, Docker, Kubernetes, Terraform, GitHub Actions, infrastructure, platform engineering, incident response, on-call, self-service",
  "role": "engineer",
  "scope": "implementation",
  "output-format": "code",
  "related-skills": "terraform-engineer, kubernetes-specialist, sre-engineer, monitoring-expert, security-reviewer"
}
  • docker
  • kubernetes
  • terraform
  • github-actions
  • ci-cd
  • infrastructure-as-code
  • deployment
  • gitops
  • incident-response
  • platform-engineering

README badge

README badge for jeffallan/claude-skills/devops-engineer

Generates Dockerfiles, CI/CD pipelines, Kubernetes manifests, and infrastructure-as-code templates for Terraform or Pulumi. Covers deployment automation, GitOps setup, incident response runbooks, and internal developer platform tooling across GitHub Actions, Docker, Kubernetes, and cloud platforms.

Generated from the current SKILL.md.

Does this skill generate Kubernetes manifests and Terraform code?
Yes. The skill generates Kubernetes deployments, services, and ingress configs, plus Terraform or Pulumi infrastructure templates for AWS, GCP, and Azure.
What CI/CD platforms does this skill support?
The skill supports GitHub Actions, GitLab CI, Jenkins, and CircleCI. It includes detailed reference guidance for GitHub Actions workflows.
Does this skill handle incident response and on-call runbooks?
Yes. The skill includes incident response workflows, production troubleshooting, rollback procedures, and on-call runbook generation.
Will this skill deploy to production without approval?
No. The skill enforces a constraint that production deployments require explicit approval and includes validation steps like terraform plan before any deployment.
Does this skill support Kubernetes GitOps tools?
Yes. The skill uses GitOps for Kubernetes deployments via ArgoCD or Flux and includes reference guidance for both tools.

Generated from the current SKILL.md. These answers refresh after source changes.