Help us improve
Share bugs, ideas, or general feedback.
From role-devops
Provides deep expertise on production GCP workloads: IAM/Workload Identity, VPC networking, GKE/Cloud Run, Cloud SQL/Spanner/Bigtable/BigQuery, Pub/Sub, security/observability with Cloud Armor/KMS/Logging/Monitoring, and cost optimization.
npx claudepluginhub rnavarych/alpha-engineer --plugin role-devopsHow this skill is triggered — by the user, by Claude, or both
Slash command
/role-devops:gcp-expertThis skill is limited to the following tools:
The summary Claude sees in its skill listing — used to decide when to auto-load this skill
- Designing GCP resource hierarchy, IAM roles, or Workload Identity Federation for CI/CD
Provides production GCP patterns for Cloud Run with Terraform, Workload Identity Federation (no SA keys), private Cloud SQL and Memorystore Redis, BigQuery analytics, Cloud Armor WAF, Secret Manager, VPC Service Controls, IAM least privilege. Use for architecture design, Terraform IaC, IAM reviews.
Provides GCP infrastructure patterns and best practices for Compute Engine, Cloud Functions, Cloud Storage, BigQuery, GKE. Includes Terraform examples, security tips, SQL patterns, and cost optimization.
Routes GCP tasks to specialist agents based on domain classification. Handles IAM, networking, and multi-domain dispatching with GCP resource hierarchy awareness.
Share bugs, ideas, or general feedback.
references/iam-networking.md — Resource hierarchy and IAM model, Organization Policy constraints, Workload Identity Federation (GitHub Actions/GitLab OIDC), Workload Identity for GKE, service account best practices, Shared VPC, VPC Service Controls, Private Google Access, Cloud NAT, global/regional/internal/network load balancers, Cloud CDN, Cloud DNS routing policies, Traffic Directorreferences/compute-storage-databases.md — GKE Autopilot/Standard/NAP/Binary Authorization/Dataplane V2/gVisor, Cloud Run VPC egress and IAM invoker, Cloud Functions Gen 2 with eventarc, GCS uniform access and retention, Cloud SQL HA/Auth Proxy/IAM auth, Spanner interleaved tables, Bigtable row key design, BigQuery partitioning and row-level security, Pub/Sub dead letter topics, Cloud Build private pools, Artifact Registry cleanup policiesreferences/security-observability-cost.md — SCC Standard/Premium with SIEM integration, Cloud Armor WAF and rate limiting with preview mode, Cloud KMS rotation, Cloud HSM, Secret Manager versioning and audit logging, Cloud Logging sinks, log exclusion filters, Cloud Monitoring MQL alerting, SLO burn rate monitoring, Cloud Trace sampling, Cloud Profiler, Cloud Error Reporting, Committed Use Discounts, Billing Export to BigQuery, Budget Alerts, Recommender API