| Raw K8s YAML | Simple deployments, one-off resources | | Kustomize | Environment variations, overlays without templating | | Helm | Complex apps, third-party charts, heavy templating | | Terraform | Cloud resources, infrastructure lifecycle | | GitHub Actions | CI/CD, automated testing, releases | | Makefile | Build automation, self-documenting targets |
Kustomize when: Simple env differences, readable manifests, patching YAML Helm when: Complex templating, third-party charts, release management
Every workload: non-root user, read-only filesystem, no privilege escalation, dropped capabilities, network policies.
Шаблоны инфраструктуры для действий Kubernetes, Terraform, Helm, Kustomize и GitHub. Используйте при принятии архитектурных решений K8s, выборе между Helm и Kustomize, структурировании модулей Terraform, написании рабочих процессов CI/CD или применении лучших практик безопасности. Источник: julianobarbosa/claude-code-skills.