SubImage
Official@subimagesec · United States of America
Map your cloud and secure everything.
Agent Skills by SubImage
Showing 16 vetted skills indexed across 1 GitHub repositories.
create-custom-rule
Draft and save tenant-local SubImage custom Cypher rules for security detections.
improve-subimage-coverage
Audit repository coverage gaps in SubImage and identify missing provider wiring.
review-attack-path
Analyze SubImage attack paths to explain attacker movement, blast radius, and remediation.
investigate-ip
Resolve IP and domain ownership across AWS, GCP, and Azure resources.
triage-new-findings
Triage SubImage security findings by prioritizing rules with open issues and grouping them by theme.
investigate-iam
Audit AWS IAM privilege exposure via Cypher graph queries.
build-cypher-query
Build Cypher queries for SubImage Neo4j relationship investigations.
investigate-cve
Summarize a CVE's severity, exploit status, affected resources, and remediation options.
investigate-container
Trace container image provenance and audit Kubernetes cluster internet exposure.
connect-aws
Deploy the SubImageScanRole IAM role to connect AWS accounts to SubImage.
connect-github
Connect GitHub organizations to SubImage for repository and dependency discovery.
connect-gcp
Connect a Google Cloud organization to SubImage with Workload Identity Federation.
connect-kubernetes-outpost
Deploy a SubImage Outpost via Helm or Docker to connect private APIs through an outbound Tailscale tunnel.
connect-azure
Create an Azure service principal with Reader role for SubImage inventory access.
connect-declarative-schema
Loads custom service catalog and CMDB data into the SubImage graph via AWS S3 or GCS using declarative YAML schemas and JSONL shaping.
preflight-new-skill
Audit SKILL.md files for frontmatter, style, leaks, and publication readiness.
Frequently Asked Questions About SubImage
FAQPage SchemaWhat specific security tasks does SubImage enable?▼
SubImage enables granular security investigations including auditing IAM privilege exposure, tracing container image provenance, and mapping attack paths. Users can build custom Cypher queries to identify misconfigurations, triage findings by severity, and resolve IP or domain ownership across disparate cloud environments.
Which personas benefit most from SubImage?▼
Cloud security engineers, infrastructure architects, and compliance officers utilize SubImage to visualize complex resource relationships. It is designed for technical teams responsible for maintaining secure cloud perimeters, managing identity permissions, and remediating vulnerabilities within multi-cloud and Kubernetes-based architectures.
What are the prerequisites for connecting cloud environments?▼
Connecting environments requires specific identity configurations, such as AWS IAM roles, Azure service principals with Reader access, or Google Cloud Workload Identity Federation. For private infrastructure, users must deploy a SubImage Outpost via Helm or Docker to establish connectivity through an outbound Tailscale tunnel.