Kubernetes Container Configuration Audit
Inspect live container configuration for image, resource, and restart risks.
@Aident7,462253Updated Aug 12, 2026
Works with
name: kubernetes-container-configuration-audit description: "Inspect live container configuration for image, resource, and restart risks."
Kubernetes Container Configuration Audit
Inspect live container configuration for image, resource, and restart risks.
Required Aident Actions
- <action-tag>cli:kubectl:get_deployments</action-tag> (required inputs: namespace): List deployments in a namespace (JSON).
- <action-tag>cli:kubectl:get_pods</action-tag> (required inputs: namespace): List pods in a namespace (JSON).
- <action-tag>cli:kubectl:describe_pod</action-tag> (required inputs: pod_name, namespace): Describe a specific pod.
Use Aident Loadout to read the current Action schema before constructing inputs. Check the required integration connection in Aident Vault. If an Action is billable or mutating, run Aident preflight, show the affected target and quoted cost or risk, and wait for explicit user confirmation before execution.
Workflow
- Confirm the requested outcome, source mAction · Get Deploymentseptance criteria.
- Apply the source-derived guidance below to create a Action · Get Podsing an Action.
- Select only the Aident Actions whose documented Action · Describe Podo not invoke every listed Action by default.
- Inspect the current schema and prepare the minimum valid input for each selected Action.
- Preflight each selected Action. Execute it only after any required confirmation, in dependency order, and carry returned IDs or asset URLs into later steps.
- Verify the returned IDs, URLs, statuses, or artifacts against the acceptance criteria. Report partial completion precisely and do not repeat paid or mutating calls blindly.
Source-Derived Guidance
- Compare deployment intent with current pod state and detailed container conditions.
- Call out unpinned images, missing resources, and restart patterns supported by evidence.
Execution Boundaries
- Treat upstream provider-specific commands as background knowledge only. Execute the workflow through the exact Aident Actions above.
- Never request raw credentials in chat. Use Aident Vault connection flows for required accounts.
- Preserve user-provided wording, brand constraints, rights restrictions, and target identifiers. Do not invent authorization.
- Read current state before a mutation, state the exact target, and include a rollback or recovery step in the result.
- Stop when a required integration is disconnected, preflight rejects the input, the target is ambiguous, or the user declines a required confirmation.
Output
Return the execution plan, selected Action names, confirmed targets, Aident result identifiers or asset URLs, verification evidence, and any remaining blocked step.
Attribution
This Skill adapts the reviewed upstream workflow. See for the pinned source and for the preserved license.