Rewrite 548 skill descriptions to the activation rubric

Each rewritten description now states both what the skill does (concrete
capability, named tools/artifacts) and an explicit when-to-use trigger,
improving agent discovery/activation. Grounded in each skill's own body;
changes confined to the `description` field only (bodies and all other
frontmatter untouched). Produced by a gated audit->rewrite->recheck loop
(548 -> 0 flagged) with a sampled anti-invention check (0 ungrounded).

Schema: 817/817 pass. Framework-ID gate: 0 defects.
This commit is contained in:
Mahipal
2026-08-02 09:32:13 -07:00
parent 04a207702e
commit 2fb6a9faff
548 changed files with 2189 additions and 1915 deletions
+6 -5
View File
@@ -1,10 +1,11 @@
---
name: securing-kubernetes-on-cloud
description: 'This skill covers hardening managed Kubernetes clusters on EKS, AKS,
and GKE by implementing Pod Security Standards, network policies, workload identity,
RBAC scoping, image admission controls, and runtime security monitoring. It addresses
cloud-specific security features including IRSA for EKS, Workload Identity for GKE,
and Managed Identities for AKS.
description: 'Hardens managed Kubernetes clusters on EKS, AKS, and GKE by implementing
Pod Security Standards, network policies, workload identity (IRSA for EKS, Workload
Identity for GKE, Managed Identities for AKS), RBAC scoping, image admission controls,
and runtime security monitoring. Use when deploying a new managed Kubernetes cluster
with security requirements or hardening an existing EKS, AKS, or GKE cluster after
an audit or pentest finding.
'
domain: cybersecurity