k8s-security-policy
This Claude Code plugin reviews Kubernetes manifests against the Pod Security Standards (Restricted profile), checking for security controls like runAsNonRoot, readOnlyRootFilesystem, capability dropping, seccomp, and resource limits, then returns a findings table and hardened manifest. It auto-invokes when Kubernetes security topics or workload manifests are detected and ships a read-only subagent for isolated evaluation.
Install
Source: https://github.com/matthews-wong/claude-code-plugins/tree/HEAD/plugins/k8s-security-policy
What it's made of
1 agent · 1 skill
- Commands
- 0
- Agents
- 1
- Skills
- 1
- MCP servers
- 0
- Hooks
- 0
What it needs & plugs into
- API keys
- none
- Paid services
- none detected
- External tools
- none
- Talks to
- nothing external detected
Analyzed . Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.
Is this your plugin?
Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (matthews-wong).