PlugMyPlugin
← Browse

dockerfile-hardening

matthews-wong ★ 2

This Claude Code plugin reviews and generates hardened Dockerfiles by checking for security best practices like pinned base images with digests, non-root users, multi-stage builds, absence of embedded secrets, HEALTHCHECK directives, and dropped capabilities. It auto-activates on Dockerfile mentions and returns a findings table plus a corrected, production-grade Dockerfile following a reference checklist.

Security DevOps No API key detected prompt pack

Install

> /plugin marketplace add matthews-wong/claude-code-plugins/tree/HEAD/plugins/dockerfile-hardening
> /plugin install dockerfile-hardening

Source: https://github.com/matthews-wong/claude-code-plugins/tree/HEAD/plugins/dockerfile-hardening

What it's made of

1 agent · 1 skill

Commands
0
Agents
1
Skills
1
MCP servers
0
Hooks
0

What it needs & plugs into

API keys
none
Paid services
none detected
External tools
none
Talks to
nothing external detected

Analyzed . Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.

Is this your plugin?

Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (matthews-wong).