Skip to content
Back to skills

Ci Cd Pipeline

ASecurity

Design or improve CI/CD so changes are reproducibly built, tested, secured, promoted, deployed, observed, and recoverable.

  • 16 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added September 11, 2026
ai-agentsrustci/cdsecurity

Security analysis

A100/100

Scanned September 11, 2026

npx -y skills add Dadmin88/hermes-profile-packs --skill ci-cd-pipeline --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Ci Cd Pipeline?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Ci Cd Pipeline
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/dadmin88-ci-cd-pipeline/badge)](https://www.skillsdirectory.com/skills/dadmin88-ci-cd-pipeline)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: ci-cd-pipeline
description: Design or improve CI/CD so changes are reproducibly built, tested, secured, promoted, deployed, observed, and recoverable.
---
# CI/CD Pipeline

Use when creating or changing build, test, artifact, promotion, or deployment automation.

## Procedure
1. Define the source event, supported branches/tags, artifact, environments, and release policy.
2. Make builds deterministic enough to identify exactly what source produced an artifact.
3. Order fast feedback before expensive jobs while preserving required quality/security gates.
4. Keep secrets scoped to the smallest jobs/environments and avoid exposing them to untrusted code.
5. Promote immutable artifacts rather than rebuilding differently for each environment when practical.
6. Design deployment strategy, health validation, concurrency controls, and rollback/recovery.
7. Cache carefully: optimize time without allowing stale or untrusted state to bypass correctness.
8. Emit useful job/deployment evidence for failures and releases.

## Quality gate
The pipeline must make the safe path the normal path and allow a failed release to be diagnosed and recovered without guesswork.

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…