k8s-security-policies
Kubernetes NetworkPolicy, Pod Security Standards, and RBAC for defense-in-depth clusters.
🛡️ AgentReady threat assessment
MAESTRO 7-layer threat model + OWASP AIVSS risk score for k8s-security-policies, derived from its capabilities.
These scores are auto-generated from public information (the agent's own listing, docs, and repository) using the canonical OWASP AIVSS formula and the MAESTRO framework — an estimate for guidance, not a penetration test, audit, or certification. See the scoring methodology — every score is re-derived by the same automated method as an agent's public evidence changes.
Overview
An Agent Skill that injects production-grade Kubernetes security guidance: network segmentation via NetworkPolicy, pod security standards, least-privilege RBAC, and admission control. It maps controls to compliance requirements. The skill supplies manifest patterns the agent applies to cluster configs.
Key features and capabilities
- NetworkPolicy network isolation
- Pod Security Standards enforcement
- Least-privilege RBAC and admission control
Use cases
- Securing Kubernetes clusters
- Network segmentation for compliance