cloud-containers

Identify cloud and container misconfigurations across AWS, Azure, GCP, Docker, and Kubernetes.

3|1|Updated May 26, 2026
One-click install
npx skills add https://github.com/LeoWSY-hashblue/-communitytools-custom --skill cloud-containers-leowsy-hashblue
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: cloud-containers
Source: https://github.com/LeoWSY-hashblue/-communitytools-custom/tree/main/skills/cloud-containers
Command: npx skills add https://github.com/LeoWSY-hashblue/-communitytools-custom --skill cloud-containers-leowsy-hashblue

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

Cloud and container security often suffer from misconfigurations across multiple cloud providers and orchestration platforms. This Skill provides a structured approach to test AWS, Azure, GCP, Docker, and Kubernetes for misconfigurations, privilege escalations, and exposure pathways, enabling proactive risk reduction.

Core Features & Use Cases

  • Enumerates cloud resources and container configurations for misconfigurations and exposure vectors.
  • Covers AWS, Azure, GCP, Docker, and Kubernetes, including IAM/RBAC, secret management, and host-namespace boundaries.
  • Use Case: A blue-team or red-team scenario to rapidly assess posture and generate remediation guidance with consolidated evidence.

Quick Start

Run a cloud-containers assessment workflow across your targeted cloud accounts and container environments to identify misconfigurations and exposure paths.

Frequently Asked Questions about cloud-containers

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I check Kubernetes RBAC and pod security for misconfigurations?

To check Kubernetes RBAC and pod security, you perform modular reconnaissance to enumerate role bindings and isolation boundaries, collecting evidence of privilege escalation paths. This process identifies IAM and RBAC misconfigurations to produce actionable remediation guidance.

What is the best way to assess cloud IAM misconfigurations across AWS, Azure, and GCP?

The best way to assess cloud IAM misconfigurations across AWS, Azure, and GCP is to run a unified security posture workflow. It identifies exposure vectors and privilege escalation risks across multiple cloud providers, generating consolidated evidence and remediation reports.

How do I test Docker container isolation and identify exposure pathways?

To test Docker container isolation and identify exposure pathways, you enumerate container configurations to check host-namespace boundaries and secret management. This assessment reveals misconfigurations and generates actionable security reports for proactive risk reduction.

Can I use this approach for both red team exploitation and blue team defense?

Yes, you can use this approach for both red team exploitation and blue team defense. It identifies and exploits misconfigurations to assess security posture, enabling red teams to find exposure pathways and blue teams to generate proactive remediation guidance.

Does container security pentesting require separate workflows for storage exposure and IAM checks?

No, container security pentesting does not require separate workflows. A single modular reconnaissance workflow identifies storage exposure, IAM misconfigurations, and container isolation checks, consolidating evidence collection to produce a unified, actionable security report.