LogoClawIndex
CasesSkillsAbout
LogoClawIndex

ClawIndex

OpenClaw Skills & Use Case Index

ClawIndex is an ecosystem-driven index of OpenClaw skills and real-world use cases.

Index

Skills·
Cases

Meta

About·
Disclaimer·
Email·
GitHub
© 2026 ClawIndex All Rights Reserved.

Skills tagged: cis

Browse skills that share this tag.

  • cis-aws-storage-2.4 - Ensure the creation of a new volume
    cisawsstorageebs

    ★ 2,873 · Updated 2026-09-18

    Audits and configures AWS EBS data volumes to separate critical data from root volumes with KMS encryption and disabled delete-on-termination.

    ⚙ Audit EBS volume configuration status⚙ Verify EBS volume encryption status⚙ Disable delete on termination option
  • cis-gke-v170-3.2.9 - Ensure RotateKubeletServerCertificate is set to true
    cisgkekubernetesgcp

    ★ 2,873 · Updated 2026-09-16

    Enable kubelet server certificate rotation on GKE nodes.

    ⚙ Audit Kubelet certificate rotation configuration⚙ Remediate Kubelet certificate rotation settings⚙ Restart Kubelet service
  • cis-oke-v150-5.4.3 - Ensure clusters are created with Private Nodes (Automated)
    cisokekubernetesoci

    ★ 2,873 · Updated 2026-09-14

    Audit and configure OCI OKE node pools to disable public IP addresses and ensure clusters are created with private nodes only.

    ⚙ Check OKE node pool configuration⚙ Disable public IP assignment⚙ Configure nodes with private IPs
  • cis-ocp-v190-1.2.27 - Check OpenShift API Server Client CA File Config
    cisopenshiftkubernetesredhat

    ★ 2,873 · Updated 2026-09-13

    Audits the --client-ca-file argument and CA bundle configuration for the OpenShift API server according to CIS Benchmark Control 1.2.27.

    ⚙ Audit API server client-ca configuration⚙ Verify client CA bundle file existence
  • cis-ocp-v180-1.1.12 - Ensure etcd data directory ownership is set to etcd:etcd
    cisopenshiftkubernetesredhat

    ★ 1 · Updated 2026-09-13

    Audits OpenShift etcd data directory ownership to verify it is set to etcd:etcd according to CIS benchmark 1.1.12.

    ⚙ Audit etcd data directory ownership
  • cis-bind-v100-2-5 - Set root Ownership of BIND Configuration Files
    cisbinddnsisc-bind

    ★ 2,873 · Updated 2026-09-13

    Audits and sets root ownership of ISC BIND configuration files to restrict unauthorized modifications.

    ⚙ Audit BIND configuration file ownership⚙ Identify non-root owned configuration files⚙ Change configuration file ownership to root
  • cis-azure-storage-11.1 - Ensure SAS tokens allowed protocols is set to HTTPS Only
    cisazurestorageblob-storage

    ★ 2,873 · Updated 2026-09-12

    Ensure 'Allowed Protocols' for shared access signature (SAS) tokens is set to 'HTTPS Only'.

    ⚙ Revoke SAS by deleting access policy⚙ Revoke SAS by rotating access keys
  • cis-cassandra41-1.4 - Ensure latest version of Cassandra is installed
    ciscassandrainstallationupdates

    ★ 1 · Updated 2026-09-12

    Ensure the Cassandra installation is updated to the latest supported version from valid repositories.

    ⚙ Check installed Cassandra version⚙ Drain memtables data to SSTables⚙ Backup data and configuration files
  • cis-gcp-cos-2.1.2 - Ensure X Window System is not installed
    cisgcpcontainer-optimized-osx-window

    ★ 2,873 · Updated 2026-09-11

    Audits and ensures that the X Window System is not installed on Google Container-Optimized OS.

    ⚙ Audit X Window System installation⚙ Verify package info file
  • cis-cassandra40-v110-3.8 - Review Superuser/Admin Roles
    ciscassandraaccess-controlroles

    ★ 1 · Updated 2026-09-11

    Audits and remediates superuser roles in Apache Cassandra to limit administrator privileges.

    ⚙ Audit superuser roles in Cassandra⚙ Revoke superuser privileges from roles
  • cis-k8s-v1120-5.6.2 - Ensure seccomp profile is docker/default in pod definitions
    ciskubernetespoliciesgeneral-policies

    ★ 2,873 · Updated 2026-09-10

    Audits and sets the docker/default seccomp profile in Kubernetes pod definitions to restrict container system calls.

    ⚙ Audit pod seccomp profile settings⚙ Set RuntimeDefault seccomp profile
  • cis-eks-v180-4.1.7 - CIS EKS Cluster Access Manager API
    securitykubernetesawseks

    ★ 2,873 · Updated 2026-05-09

    Check and configure EKS cluster access using Cluster Access Manager API

    ⚙ check EKS cluster access configuration⚙ query authentication mode⚙ configure cluster authentication mode