helm-charts-audit
Installation
SKILL.md
Purpose
Enforce Helm chart quality and security standards across the helm-charts/ directory through automated checks.
What it checks (13 checks):
- Image Tags (no latest, mutable tags) - HIGH
- Security Context (runAsNonRoot, no privileged) - HIGH
- Resource Limits (requests, limits, memory) - HIGH
- RBAC Wildcards (no * permissions) - HIGH
- Health Probes (liveness, readiness) - HIGH
- Helm Lint (official helm validation) - HIGH
- Chart Metadata (apiVersion, version, maintainers) - MEDIUM
- Chart Structure (README, NOTES.txt, _helpers.tpl) - MEDIUM
- Dependencies (pinned versions, Chart.lock) - MEDIUM
- Deprecated APIs (no v1beta1, use stable APIs) - MEDIUM
- Argo Rollouts (strategy, analysis, steps) - MEDIUM
- Ingress TLS (certificates, annotations) - MEDIUM
- GPU Resources (nvidia.com/gpu, tolerations) - LOW