Skip to content
OpenSmartRoute

Marketplace

Everything your AI needs, in one place.

Ready-made agents, skills, personas, prompts, templates and tools. Each one is checked before it goes live, works with any model, and installs in a click. Rate what you use so the best rises to the top.

143.8K
listings
1
installs
0
reviews
38.7K
publishers
25 results
Skill

kubernetes-security-policies

Kubernetes security policies, RBAC, and Pod Security Standards for hardened cluster deployments. Use when implementing cluster security, defining network policies, or enforcing security compliance in

by nickcrewskills.sh
(0)
0Free
Skill

analyzing-docker-container-forensics

Investigate compromised Docker containers by analyzing images, layers, volumes, logs, and runtime artifacts to identify malicious activity and evidence.

by mukul975skills.sh
(0)
0Free
Skill

analyzing-kubernetes-audit-logs

Parses Kubernetes API server audit logs (JSON lines) to detect exec-into-pod, secret access, RBAC modifications, privileged pod creation, and anonymous API access, and builds SIEM detection rules from

by mukul975skills.sh
(0)
0Free
Skill

benchmarking-kubernetes-with-kube-bench

Installs and runs the kube-bench tool against a Kubernetes cluster as a Job, DaemonSet, or standalone binary, selecting the correct benchmark version and targets (control plane, etcd, kubelet, worker

by mukul975skills.sh
(0)
0Free
Skill

detecting-container-drift-at-runtime

Detects unauthorized runtime drift in containers by monitoring binary execution, filesystem changes, and configuration deviation from the original immutable image, using Falco and Microsoft Defender f

by mukul975skills.sh
(0)
0Free
Skill

hardening-docker-daemon-configuration

Hardens the Docker daemon (dockerd) through /etc/docker/daemon.json with user namespace remapping, TLS client authentication, seccomp profiles, and CIS Docker Benchmark controls such as icc, no-new-pr

by mukul975skills.sh
(0)
0Free
Skill

implementing-container-network-policies-with-calico

Uses Calico's own policy CRDs beyond the upstream Kubernetes API - GlobalNetworkPolicy, HostEndpoint, NetworkSet, policy tiers, and DNS-based egress rules - applied and audited with calicoctl. Use whe

by mukul975skills.sh
(0)
0Free
Skill

implementing-gcp-binary-authorization

Implements GCP Binary Authorization end to end, including creating KMS-backed attestors, Container Analysis notes, deploy-time policies, and signing image attestations, so that only trusted, verified

by mukul975skills.sh
(0)
0Free
Skill

implementing-runtime-security-with-tetragon

Implements eBPF-based runtime observability and in-kernel enforcement in Kubernetes with Cilium Tetragon, monitoring process execution, file access, network connections, and syscalls, and blocking dan

by mukul975skills.sh
(0)
0Free
Skill

implementing-supply-chain-security-with-in-toto

Implements supply chain integrity verification for container builds with the in-toto framework: generating signing keys, defining a supply chain layout, recording pipeline steps as signed link metadat

by mukul975skills.sh
(0)
0Free
Skill

performing-container-escape-detection

Audits container and pod configuration for escape-enabling misconfiguration using the Kubernetes Python client - privileged flags, dangerous capability grants, host path mounts, shared namespaces, and

by mukul975skills.sh
(0)
0Free
Skill

performing-container-security-scanning-with-trivy

Runs Trivy across every target type it supports - container images, filesystems, Git repositories, and Kubernetes clusters - for OS and dependency vulnerabilities, IaC misconfiguration, exposed secret

by mukul975skills.sh
(0)
0Free
Skill

scanning-container-images-with-grype

Scans container images, filesystems, and SBOMs for known CVEs with Anchore Grype, matching Syft-generated SBOM packages against NVD, GitHub Advisories, and OS-specific feeds with configurable severity

by mukul975skills.sh
(0)
0Free
Skill

scanning-containers-with-trivy-in-cicd

Integrates Aqua Security's Trivy scanner into CI/CD pipelines to detect OS package and application dependency CVEs, Dockerfile misconfigurations, and issues in filesystems or git repositories, and to

by mukul975skills.sh
(0)
0Free
Skill

scanning-iac-and-images-with-trivy

Scans container images, Infrastructure-as-Code (Terraform, CloudFormation, Kubernetes manifests, Dockerfile, Helm), filesystems, git repos, and SBOMs with Trivy's vuln, misconfig, secret, and license

by mukul975skills.sh
(0)
0Free
Skill

container-grype

Container vulnerability scanning and dependency risk assessment using Grype with CVSS severity ratings, EPSS exploit probability, and CISA KEV indicators. Use when: (1) Scanning container images and f

by aiskillstoreskills.sh
(0)
0Free
Skill

container-hadolint

Dockerfile security linting and best practice validation using Hadolint with 100+ built-in rules aligned to CIS Docker Benchmark. Use when: (1) Analyzing Dockerfiles for security misconfigurations and

by aiskillstoreskills.sh
(0)
0Free
Skill

sca-trivy

Software Composition Analysis (SCA) and container vulnerability scanning using Aqua Trivy for identifying CVE vulnerabilities in dependencies, container images, IaC misconfigurations, and license comp

by aiskillstoreskills.sh
(0)
0Free
Skill

grype

Expert guidance for Grype, the open-source vulnerability scanner by Anchore that finds known vulnerabilities (CVEs) in container images, filesystems, and SBOMs. Helps developers integrate Grype into C

by terminalskillsskills.sh
(0)
0Free
Skill

implementing-runtime-security-with-tetragon

Implement eBPF-based runtime security observability and enforcement in Kubernetes clusters using Cilium Tetragon for kernel-level threat detection and policy enforcement.

by aj-omanaiGitHub
(0)
0Free
Skill

hardening-docker-daemon-configuration

Harden the Docker daemon (dockerd) by configuring /etc/docker/daemon.json with user namespace remapping, TLS client authentication, seccomp profiles, and CIS Docker Benchmark controls such as icc, no-

by digitalygoGitHub
(0)
0Free
Skill

benchmarking-kubernetes-with-kube-bench

Run CIS Kubernetes Benchmark checks and remediate findings with kube-bench.

by RUSHYOPGitHub
(0)
0Free
Skill

benchmarking-kubernetes-with-kube-bench

Run CIS Kubernetes Benchmark checks and remediate findings with kube-bench.

by Mahesh-07-404GitHub
(0)
0Free
Skill

scanning-iac-and-images-with-trivy

Scans container images, Infrastructure-as-Code (Terraform, CloudFormation, Kubernetes manifests, Dockerfile, Helm), filesystems, git repos, and SBOMs with Trivy's vuln, misconfig, secret, and license

by nuroctaneGitHub
(0)
0Free
1

Find

Search or browse by kind. Every card shows who made it, how many people installed it and what they think.

2

Install

One click. You get a manifest the router understands, plus copy-paste snippets for the CLI, Python and YAML.

3

Rate and publish

Leave a star rating after you have used it. Made something useful? Publish it - free listings go live immediately.

Prefer the terminal? osr stack apply registry://starter installs the starter template.