DevSecOps pipeline architecture — CI/CD design, shift-left security, supply chain integrity, release management, and compliance automation. Use when the user asks to 'design the CI/CD pipeline', 'integrate security into delivery', 'set up SBOM and artifact signing', 'automate compliance', 'measure DORA metrics', or mentions SAST, SCA, DAST, secrets scanning, IaC scanning, canary deployment, or policy-as-code. [EXPLICIT]
Generic, brand-neutral engineering capability; deep, sourced playbooks live in
references/andknowledge/. [DOC]
Generic, brand-neutral engineering capability; sourced playbooks in
references//knowledge/. [DOC]
DevSecOps architecture designs how software is built, tested, secured, and released to production. It integrates security into every stage of the delivery pipeline, ensuring code quality, compliance, and supply chain integrity [EXPLICIT]
Deep, evidence-tagged playbooks — open the one the task needs (ICM Layer 3, on-demand). [INFERENCE]
| Reference |
|---|
references/devsecops-patterns.md |
references/full-playbook.md |
references/knowledge-graph.mmd |
references/state-of-the-art.md |
references/ playbook. [EXPLICIT]Capas del packet, cargables bajo demanda (disciplina ICM: una capa por vez, nunca todas juntas): references/ guías de profundidad (cargar UNA por etapa) · knowledge/ cuerpo de conocimiento · prompts/ prompts listos · examples/ salida de ejemplo · agents/ subagentes del packet · assets/ recursos estáticos.
e8f986b
If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.