k8s-security-policies
Kubernetes NetworkPolicy, Pod Security Standards, and RBAC for defense-in-depth clusters.
๐ก๏ธ AgentReady threat assessment
MAESTRO 7-layer threat model + OWASP AIVSS risk score for k8s-security-policies, derived from its capabilities.
AIVSS 9.0 ยท Critical
View MAESTRO 7-layer threat model โOverview
An Agent Skill that injects production-grade Kubernetes security guidance: network segmentation via NetworkPolicy, pod security standards, least-privilege RBAC, and admission control. It maps controls to compliance requirements. The skill supplies manifest patterns the agent applies to cluster configs.
Key features
- NetworkPolicy network isolation
- Pod Security Standards enforcement
- Least-privilege RBAC and admission control
Use cases
- Securing Kubernetes clusters
- Network segmentation for compliance