devops

A set of instructions for managing software infrastructure, including containers, automated build and deployment pipelines, cloud services, and monitoring. CI/CD means automatically testing and delivering code as it changes.

In plain words
What is it for?
It is for working with Docker, CI/CD systems such as GitHub Actions and GitLab CI, AWS, GCP, Azure, monitoring tools, alerts, and deployment strategies.
Why use it?
It encourages incremental infrastructure changes, local configuration checks, secret handling, and pinned dependencies, reducing deployment and configuration mistakes.

Skill for Claude CodeCodex

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add skills/sipyourdrink-ltd/bernstein/devops
Any agent
npx skills add sipyourdrink-ltd/bernstein --skill devops
Clone the repo
git clone --depth 1 https://github.com/sipyourdrink-ltd/bernstein

Made for: Claude Code, Codex.

Per session 16 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 342 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00016 $0.00342
Opus 5 $0.00008 $0.00171
Sonnet 5 $0.00003 $0.00068
Haiku 4.5 $0.00002 $0.00034

Measured 2d ago against content hash cfccea29c8ef, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

devops scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

templates/skills/devops/SKILL.md · 47 lines

What it actually says

DevOps Engineering Skill

You are a DevOps engineer. Build and maintain infrastructure, CI/CD pipelines, deployment, and monitoring.

Specialization

  • Docker and container orchestration
  • CI/CD pipelines (GitHub Actions, GitLab CI)
  • Cloud infrastructure (AWS, GCP, Azure)
  • Monitoring and alerting (Prometheus, Grafana, logging)
  • Deployment strategies (blue-green, canary, rolling)
  • Shell scripting and automation

Work style

  1. Read the task description and existing infra config before writing.
  2. Make infrastructure changes incremental and reversible.
  3. Test configuration locally before pushing (docker build, compose up).
  4. Use environment variables for secrets, never hardcode them.
  5. Document any new services, ports, or dependencies.

Rules

  • Only modify files listed in your task's owned_files.
  • Run validation before marking complete: docker compose config or equivalent.
  • Never store secrets in git; use .env files excluded via .gitignore.
  • Pin dependency versions in Dockerfiles and CI configs.

Call load_skill(name="devops", reference="ci-patterns.md") for GitHub Actions guidance, or reference="docker-practices.md" for image hardening.

Files

What ships with it

2 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 2d ago First seen · 47 lines · 16 tokens per session scan A cfccea29c8ef

Subscribe to this mod's changes

devops is a skill published in the GitHub repository sipyourdrink-ltd/bernstein (1,038 stars, last pushed yesterday), licensed Apache-2.0. It adds 16 tokens to every session and 342 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.

Related

Other skills, from other repositories

dep

Handles containerization, CI/CD pipelines, and deployment setup.

sickn33/agentic-awesome-skills · 14 tokens

competition-agent-cloud

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for AI-agent, prompt-injection, MCP or toolchain, cloud, container, CI/CD, and supply-chain challenges. Use when the user asks to analyze prompt-to-tool flows, retrieval poisoning, mounted secrets, deployment drift, runtime-vs-manifest…

zhaoxuya520/reverse-skill · 107 tokens

devops-engineer

Creates Dockerfiles, configures CI/CD pipelines, writes Kubernetes manifests, and generates Terraform/Pulumi infrastructure templates. Handles deployment automation, GitOps configuration, incident response runbooks, and internal developer platform tooling. Use when setting up CI/CD pipelines, containerizing…

Jeffallan/claude-skills · 107 tokens

toolchain-commands

Installing dependencies, running dev/build/test/lint, filtering packages, single-test runs, git hooks, preparing a clone (.env.development / .env.test), or Docker-backed local services and dev servers.

latitude-dev/latitude-llm · 46 tokens

konflux-build

Create a manual Konflux build from a PR with configurable image expiry (default 30 days).

openshift/hypershift · 23 tokens

moai-ref-secops

DevSecOps, container, and API operational defensive security reference: CI/CD pipeline hardening, secret scanning, IaC misconfiguration detection, SAST/DAST integration, container image scanning, Kubernetes RBAC hardening, container-escape defense, runtime threat detection, OWASP API Top 10 operational defense, WAF…

modu-ai/moai-adk · 201 tokens