All skills
jeffallan avatar

/devops-engineer

@fb67815
by jeffallanjeffallan/claude-skills12k stars
1,124

Creates Dockerfiles, configures CI/CD pipelines, writes Kubernetes manifests, and generates Terraform/Pulumi infrastructure templates. Handles deployment automation, GitOps configuration, incident response runbooks, and internal developer platform tooling. Use when setting up CI/CD pipelines, containerizing applications, managing infrastructure as code, deploying to Kubernetes clusters, configuring cloud platforms, automating releases, or responding to production incidents. Invoke for pipelines, Docker, Kubernetes, GitOps, Terraform, GitHub Actions, on-call, or platform engineering.

Use this Skill: https://skilld.dev/gh/jeffallan/claude-skills/devops-engineer

This session only. Nothing lands on disk.

referencesterraform-iac.md

≈793 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Terraform Infrastructure as Code

AWS ECS Fargate Setup

terraform {
  required_providers {
    aws = { source = "hashicorp/aws", version = "~> 5.0" }
  }
  backend "s3" {
    bucket = "terraform-state"
    key    = "app/terraform.tfstate"
    region = "us-east-1"
  }
}

resource "aws_ecs_cluster" "main" {
  name = "app-cluster"
  setting {
    name  = "containerInsights"
    value = "enabled"
  }
}

resource "aws_ecs_task_definition" "app" {
  family                   = "app"
  network_mode             = "awsvpc"
  requires_compatibilities = ["FARGATE"]
  cpu                      = "256"
  memory                   = "512"
  execution_role_arn       = aws_iam_role.ecs_execution.arn

  container_definitions = jsonencode([{
    name  = "app"
    image = "${var.ecr_repository}:${var.image_tag}"
    portMappings = [{ containerPort = 3000 }]
    logConfiguration = {
      logDriver = "awslogs"
      options = {
        awslogs-group         = aws_cloudwatch_log_group.app.name
        awslogs-region        = var.region
        awslogs-stream-prefix = "app"
      }
    }
    secrets = [
      { name = "DATABASE_URL", valueFrom = aws_ssm_parameter.db_url.arn }
    ]
  }])
}

resource "aws_ecs_service" "app" {
  name            = "app"
  cluster         = aws_ecs_cluster.main.id
  task_definition = aws_ecs_task_definition.app.arn
  desired_count   = 2
  launch_type     = "FARGATE"

  network_configuration {
    subnets         = var.private_subnets
    security_groups = [aws_security_group.app.id]
  }

  load_balancer {
    target_group_arn = aws_lb_target_group.app.arn
    container_name   = "app"
    container_port   = 3000
  }
}

AWS RDS PostgreSQL

resource "aws_db_instance" "postgres" {
  identifier           = "app-db"
  engine               = "postgres"
  engine_version       = "16.1"
  instance_class       = "db.t3.micro"
  allocated_storage    = 20
  storage_encrypted    = true

  db_name              = "app"
  username             = "admin"
  password             = var.db_password

  vpc_security_group_ids = [aws_security_group.db.id]
  db_subnet_group_name   = aws_db_subnet_group.main.name

  backup_retention_period = 7
  skip_final_snapshot     = false
  final_snapshot_identifier = "app-db-final"

  tags = { Environment = var.environment }
}

Variables and Outputs

# variables.tf
variable "environment" {
  type        = string
  description = "Environment name"
}

variable "region" {
  type    = string
  default = "us-east-1"
}

# outputs.tf
output "ecs_cluster_arn" {
  value = aws_ecs_cluster.main.arn
}

output "alb_dns_name" {
  value = aws_lb.main.dns_name
}

Best Practices

Practice Implementation
State locking S3 backend with DynamoDB
Secrets Use AWS Secrets Manager / SSM
Modules Reusable components
Workspaces Environment separation
Tagging Consistent resource tags
Validation terraform validate, tflint

Common Commands

terraform init
terraform plan -out=tfplan
terraform apply tfplan
terraform destroy
terraform state list
terraform import aws_instance.app i-1234567890

Source: SKILL.md on GitHub

2 alerts17d5 checks · Risk CRITICAL
  • Gen Agent Trust Hub17d

    This skill provides standard DevOps engineering patterns including CI/CD pipelines, containerization, and infrastructure as code. While it utilizes powerful system tools and cloud CLI commands, these are standard for the DevOps role. The external documentation link resides on the author's personal domain. Automated scanner alerts regarding the skill file and documentation URL appear to be false positives triggered by the legitimate use of shell scripts and system utilities.

  • Socket17d

    No alerts

  • Snyk17d

    Risk: LOW · No issues

  • Runlayer6mo

    6/9 files flagged

  • ZeroLeaks5mo

    Score: 93/100 · 2 sections analyzed

Signed by skilld at fb67815. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 2 months ago.

Steadyupdated 2 months ago
Other metadata
metadata
{
  "author": "https://github.com/Jeffallan",
  "version": "1.2.0",
  "domain": "devops",
  "triggers": "DevOps, CI/CD, deployment, Docker, Kubernetes, Terraform, GitHub Actions, infrastructure, platform engineering, incident response, on-call, self-service",
  "role": "engineer",
  "scope": "implementation",
  "output-format": "code",
  "related-skills": "terraform-engineer, kubernetes-specialist, sre-engineer, monitoring-expert, security-reviewer"
}
  • docker
  • kubernetes
  • terraform
  • github-actions
  • ci-cd
  • infrastructure-as-code
  • deployment
  • gitops
  • incident-response
  • platform-engineering

README badge

README badge for jeffallan/claude-skills/devops-engineer

Generates Dockerfiles, CI/CD pipelines, Kubernetes manifests, and infrastructure-as-code templates for Terraform or Pulumi. Covers deployment automation, GitOps setup, incident response runbooks, and internal developer platform tooling across GitHub Actions, Docker, Kubernetes, and cloud platforms.

Generated from the current SKILL.md.

Does this skill generate Kubernetes manifests and Terraform code?
Yes. The skill generates Kubernetes deployments, services, and ingress configs, plus Terraform or Pulumi infrastructure templates for AWS, GCP, and Azure.
What CI/CD platforms does this skill support?
The skill supports GitHub Actions, GitLab CI, Jenkins, and CircleCI. It includes detailed reference guidance for GitHub Actions workflows.
Does this skill handle incident response and on-call runbooks?
Yes. The skill includes incident response workflows, production troubleshooting, rollback procedures, and on-call runbook generation.
Will this skill deploy to production without approval?
No. The skill enforces a constraint that production deployments require explicit approval and includes validation steps like terraform plan before any deployment.
Does this skill support Kubernetes GitOps tools?
Yes. The skill uses GitOps for Kubernetes deployments via ArgoCD or Flux and includes reference guidance for both tools.

Generated from the current SKILL.md. These answers refresh after source changes.