teleport-acl-lifecycle

Installation
SKILL.md

Teleport Access List Lifecycle

Use this skill to give users access to specific Teleport resources. Browse available servers, databases, applications, Kubernetes clusters, and more, choose which ones and how users connect to them, then create, update, or retire the access list that grants that access.

Route First

Choose exactly one route before running commands, then read only the files referenced for that route:

User intent Examples Do this
Resource listing only "list AWS IC", "show apps", "what labels do databases have?", "what resources are in the cluster?" Read RESOURCE_KINDS.md and SECURITY.md. List resources/labels/assignments only; do not draft, create, or update yet.
Create new list "give alice access to apps", "create Prod SSH access", "bob needs AWS IC" Read CREATE.md, RESOURCE_KINDS.md, PRESETS.md, SCOPES.md, and SECURITY.md. If create partially succeeds and cleanup/unused-role handling is needed, also read LEFTOVER_ROLES.md.
Update existing list "add bob to Prod Apps", "add AWS IC to the existing list", "rename the list", "remove app access" Read UPDATE.md, RESOURCE_KINDS.md, PRESETS.md, LEFTOVER_ROLES.md, SCOPES.md, and SECURITY.md.
Delete existing list "delete", "remove this list", "retire", "tear down" Read DELETE.md, PRESETS.md, LEFTOVER_ROLES.md, SCOPES.md, and SECURITY.md.
Installs
24
GitHub Stars
20.9K
First Seen
Aug 5, 2026
teleport-acl-lifecycle — gravitational/teleport