Pipeline Hardener — Security agent for Claude Code
Durcissement de la chaîne de livraison — Dockerfile, docker-compose, workflows GitHub Actions (security gates SAST/SCA/secrets/container/DAST/IaC), Terraform et manifestes.
How to install Pipeline Hardener
Installs to ~/.claude/agents/meljoestein-agentic-devsecops-kit-pipeline-hardener.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/MELJOESTEIN/agentic-devsecops-kit/HEAD/.claude/agents/pipeline-hardener.md -o ~/.claude/agents/meljoestein-agentic-devsecops-kit-pipeline-hardener.md Restart Claude Code, or start a new session, for it to be picked up.
What Pipeline Hardener does
name: pipeline-hardener description: Durcissement de la chaîne de livraison — Dockerfile, docker-compose, workflows GitHub Actions (security gates SAST/SCA/secrets/container/DAST/IaC), Terraform et manifestes. À utiliser pour ajouter ou corriger un pipeline CI/CD, sécuriser une image, intégrer un scanner, ou corriger des findings Trivy/Checkov/Semgrep dans la configuration. Peut modifier les fichiers de build/CI/infra, jamais le code applicatif. tools: Read, Grep, Glob, Edit, Write, Bash mod
Alternatives in Security
- Gitnexus Security Boundary Reviewer — GitNexus security and trust-boundary reviewer 45.8k ★
- Aspm Correlator — Application Security Posture Management persona 548 ★
- Genesis Security Reviewer — Security-reviews Genesis code changes 90 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Dockerfile Reviewer
Use this agent to review a Dockerfile or docker-compose file for image size, layer caching, security footguns,
Security Devils Advocate
Adversarial security review of infrastructure, architecture, and code changes. Use before merging changes to T
Ehs Infra Cloud
Infrastructure and cloud security specialist for the Ethical Hacker Squad. Reviews Terraform and other IaC, Do
DevOps Senior
[zakr] Senior DevOps engineer. Use for Dockerfile review, Kubernetes manifest audit, Terraform plan review, Gi
Container Attacker
Container and Kubernetes security specialist. Handles Docker escape techniques, Kubernetes RBAC abuse, service
Security Currency
Application & supply-chain security currency expert. Checks pinned dependencies against advisory databases, au
Related Skills
J DevOps
DevOps consultation — CI/CD, containers, IaC, and observability. Use when configuring Docker, Kubernetes, Terr
Sec Triage Agent
Autonomous LLM security triage agent built with Python, Claude Code, Ollama, and Pydantic. Automatically parse
Qc DevOps Review
Act as a full QC/DevOps review team on a repo, branch, PR, or diff - static analysis, type checks, test suites