All Agent Skills

Cloud, DevOps & Infrastructure

building-devsecops-pipeline-with-gitlab-ci

Building Devsecops Pipeline With Gitlab Ci is a source-indexed Agent Skill for cloud, devops & infrastructure work. Based on the SKILL.md description, it focuses on configure a gitlab ci/cd pipeline that embeds sast (semgrep, spotbugs, gosec, bandit, nodejsscan),…. Use the linked GitHub file to confirm scope and prerequisites before enabling it.

Read original SKILL.md
Review it in your own environment.

AI Vitamin indexes this source file; it does not certify safety, quality, compatibility, permissions, or outcomes.

What this Skill does

Building Devsecops Pipeline With Gitlab Ci is a source-indexed Agent Skill for cloud, devops & infrastructure work. Based on the SKILL.md description, it focuses on configure a gitlab ci/cd pipeline that embeds sast (semgrep, spotbugs, gosec, bandit, nodejsscan),…. Use the linked GitHub file to confirm scope and prerequisites before enabling it.

What the author says

Configure a GitLab CI/CD pipeline that embeds SAST (Semgrep, SpotBugs, Gosec, Bandit, NodeJsScan), DAST, container scanning, dependency scanning, and secret detection via GitLab's managed security templates. Use when building a shift-left DevSecOps pipeline in GitLab, adding automated vulnerability scanning stages to .gitlab-ci.yml, or triaging scanner findings with GitLab Duo AI before deployment.

Compatibility and requirements

  • Use an agent runtime that supports Agent Skills and the linked SKILL.md format.
  • Confirm the source repository's tools, SDKs, and platform prerequisites for ui and frontend work.

How to install or import it

  • Open the linked GitHub SKILL.md and review its scope and setup instructions.
  • Install or import the skill using the agent runtime's documented workflow.
  • Run a small, non-sensitive test and verify the output before broader use.

Permissions and risks

  • Review every command, file path, network request, dependency, and credential scope before enabling it.
  • GitHub stars indicate popularity, not safety or correctness; validate the source and test with non-sensitive data.

Example workflows

  • Ask an AI agent to apply Building Devsecops Pipeline With Gitlab Ci to ui and frontend work described in the source record.
  • Have the agent state assumptions, required tools, and expected output before using this cloud, devops & infrastructure skill.
  • Compare the result with the linked GitHub SKILL.md and verify it against your project requirements.

Related Agent Skills

More source records in Cloud, DevOps & Infrastructure.

View category