gke-labs avatar

gke-labs

Official

@gke-labs

0Followers
|
26Public Repos
|
47Published Skills

Specialized security auditing and infrastructure management for Google Kubernetes Engine environments, focusing on workload isolation, RBAC hardening, and cluster lifecycle governance.

Skills Distribution
DomainCybersecurit...Kubernetes Securit.. (40%)GKE Infrastructure.. (30%)Workload Reliabili.. (20%)Declarative Config.. (10%)

Agent Skills by gke-labs

Showing 47 vetted skills indexed across 2 GitHub repositories.

gke-labsgke-labs
42

review-security-k8s-agents-sandbox

Audit Kubernetes AI agent sandboxes for code escape and lateral movement risks.

Official
Advanced
gke-labsgke-labs
42

review-security-k8s-storage

Analyze Kubernetes storage configurations for security vulnerabilities and compliance.

Official
Intermediate
gke-labsgke-labs
42

review-security-k8s-pod

Analyze Kubernetes Pod security contexts for privilege escalation and workload isolation risks.

Official
Intermediate
gke-labsgke-labs
42

review-security-k8s-network

Analyze Kubernetes NetworkPolicies, Services, and Ingress for isolation gaps and exposure risks.

Official
Advanced
gke-labsgke-labs
42

review-security-k8s-agents-firewall

Audit Kubernetes network policies and firewall rules for AI agent sandboxes.

Official
Intermediate
gke-labsgke-labs
42

review-security-k8s-nodes

Analyzes Kubernetes manifests for node boundary violations and privilege escalation risks.

Official
Intermediate
gke-labsgke-labs
42

review-security-k8s-agents-data-exfil

Audit Kubernetes network egress, RBAC, and volume mounts for data exfiltration risks.

Official
Intermediate
gke-labsgke-labs
42

review-security-k8s-agents-prompt-injection

Audit Kubernetes agent deployments for prompt injection vulnerabilities.

Official
Advanced
gke-labsgke-labs
42

review-security-k8s-agents-audit-logs

Validate Kubernetes audit logging configurations for autonomous AI agent observability.

Official
Advanced
gke-labsgke-labs
42

review-security-k8s-admission

Analyze Kubernetes admission webhooks and policies for security misconfigurations.

Official
Advanced
gke-labsgke-labs
42

review-security-k8s-agents-main

Orchestrate parallel security audits across Kubernetes agent domains and produce a consolidated JSON report.

Official
Advanced
gke-labsgke-labs
42

review-docs-drift

Compare pull request code changes against repository documentation maps to report drift.

Official
Advanced
gke-labsgke-labs
42

review-security-k8s-service-accounts

Analyze Kubernetes ServiceAccount configurations for least privilege and secure identity boundaries.

Official
Intermediate
gke-labsgke-labs
42

review-security-k8s-understand

Analyze Kubernetes architecture and resources to build security review context.

Official
Intermediate
gke-labsgke-labs
42

review-security-k8s-main

Coordinates parallel security sub-agents to audit Kubernetes infrastructure and vulnerabilities into a JSON report.

Official
Advanced
gke-labsgke-labs
42

review-security-k8s-gateway

Analyze Kubernetes Gateway API configurations for security vulnerabilities and namespace isolation.

Official
Intermediate
gke-labsgke-labs
42

review-security-k8s-namespaces

Analyze Kubernetes namespace configurations to enforce workload isolation and boundary defense.

Official
Intermediate
gke-labsgke-labs
42

review-security-k8s-rbac

Analyze Kubernetes RBAC manifests and live clusters for privilege escalation risks.

Official
Advanced
gke-labsgke-labs
42

skill-review

Audit SKILL.md files for token efficiency and structural compliance.

Official
Basic
gke-labsgke-labs
42

review-security-k8s-agents-credentials

Analyze Kubernetes manifests for AI agent credential and RBAC security vulnerabilities.

Official
Intermediate
gke-labsgke-labs
42

gke-observability

Audit and configure logging, monitoring, and tracing for Google Kubernetes Engine clusters.

Official
Intermediate
gke-labsgke-labs
42

gke-workload-troubleshooting

Diagnose GKE workload failures by analyzing pod states, namespace events, and application logs.

Official
Advanced
gke-labsgke-labs
42

gke-reliability

Configure and validate high availability settings for GKE clusters and Kubernetes workloads.

Official
Intermediate
gke-labsgke-labs
42

gke-storage

Configure GKE storage classes and CSI drivers for persistent volumes.

Official
Intermediate

Frequently Asked Questions About gke-labs

FAQPage Schema
What specific security tasks can be performed using these capabilities?

These capabilities enable comprehensive security audits of Kubernetes manifests, including RBAC privilege escalation checks, network policy validation, storage configuration analysis, and detection of data exfiltration risks within agent sandboxes.

Which technical personas benefit most from these security audits?

Platform engineers, site reliability engineers, and security architects managing Google Kubernetes Engine environments benefit from these audits to ensure workload isolation, compliance with least-privilege principles, and secure infrastructure configuration.

What are the primary prerequisites for running these security audits?

Users require access to Kubernetes manifest files or live cluster environments, along with appropriate permissions to read resource configurations, audit logs, and network policies to generate the required security assessment reports.