SubImage avatar

SubImage

Official

@subimagesec · United States of America

0Followers
|
3Public Repos
|
16Published Skills

Map your cloud and secure everything.

Skills Distribution
DomainCybersecurit...Cloud Security Pos.. (40%)Graph-Based Threat.. (30%)Identity & Access .. (20%)Infrastructure Inv.. (10%)

Agent Skills by SubImage

Showing 16 vetted skills indexed across 1 GitHub repositories.

subimagesecsubimagesec

create-custom-rule

Draft and save tenant-local SubImage custom Cypher rules for security detections.

Official
Advanced
subimagesecsubimagesec

improve-subimage-coverage

Audit repository coverage gaps in SubImage and identify missing provider wiring.

Official
Advanced
subimagesecsubimagesec

review-attack-path

Analyze SubImage attack paths to explain attacker movement, blast radius, and remediation.

Official
Advanced
subimagesecsubimagesec

investigate-ip

Resolve IP and domain ownership across AWS, GCP, and Azure resources.

Official
Advanced
subimagesecsubimagesec

triage-new-findings

Triage SubImage security findings by prioritizing rules with open issues and grouping them by theme.

Official
Advanced
subimagesecsubimagesec

investigate-iam

Audit AWS IAM privilege exposure via Cypher graph queries.

Official
Advanced
subimagesecsubimagesec

build-cypher-query

Build Cypher queries for SubImage Neo4j relationship investigations.

Official
Advanced
subimagesecsubimagesec

investigate-cve

Summarize a CVE's severity, exploit status, affected resources, and remediation options.

Official
Advanced
subimagesecsubimagesec

investigate-container

Trace container image provenance and audit Kubernetes cluster internet exposure.

Official
Advanced
subimagesecsubimagesec

connect-aws

Deploy the SubImageScanRole IAM role to connect AWS accounts to SubImage.

Official
Advanced
subimagesecsubimagesec

connect-github

Connect GitHub organizations to SubImage for repository and dependency discovery.

Official
Advanced
subimagesecsubimagesec

connect-gcp

Connect a Google Cloud organization to SubImage with Workload Identity Federation.

Official
Advanced
subimagesecsubimagesec

connect-kubernetes-outpost

Deploy a SubImage Outpost via Helm or Docker to connect private APIs through an outbound Tailscale tunnel.

Official
Advanced
subimagesecsubimagesec

connect-azure

Create an Azure service principal with Reader role for SubImage inventory access.

Official
Advanced
subimagesecsubimagesec

connect-declarative-schema

Loads custom service catalog and CMDB data into the SubImage graph via AWS S3 or GCS using declarative YAML schemas and JSONL shaping.

Official
Advanced
subimagesecsubimagesec

preflight-new-skill

Audit SKILL.md files for frontmatter, style, leaks, and publication readiness.

Official
Advanced

Frequently Asked Questions About SubImage

FAQPage Schema
What specific security tasks does SubImage enable?

SubImage enables granular security investigations including auditing IAM privilege exposure, tracing container image provenance, and mapping attack paths. Users can build custom Cypher queries to identify misconfigurations, triage findings by severity, and resolve IP or domain ownership across disparate cloud environments.

Which personas benefit most from SubImage?

Cloud security engineers, infrastructure architects, and compliance officers utilize SubImage to visualize complex resource relationships. It is designed for technical teams responsible for maintaining secure cloud perimeters, managing identity permissions, and remediating vulnerabilities within multi-cloud and Kubernetes-based architectures.

What are the prerequisites for connecting cloud environments?

Connecting environments requires specific identity configurations, such as AWS IAM roles, Azure service principals with Reader access, or Google Cloud Workload Identity Federation. For private infrastructure, users must deploy a SubImage Outpost via Helm or Docker to establish connectivity through an outbound Tailscale tunnel.