MR
Mayur Rathi
@github
⭐ 34.1k GitHub stars

Gem-Devops-Guidelines

Gem-Devops-Guidelines is an design AI skill with a core value of Design or review infrastructure, deployment, CI/CD, Docker, Kubernetes, health checks, rollback, feature flags, production readiness, and mobile release workflows. It helps developers solve real-world problems in the design domain, boosting efficiency, automating repetitive tasks, and optimizing workflows.

Design or review infrastructure, deployment, CI/CD, Docker, Kubernetes, health checks, rollback, feature flags, production readiness, and mobile release workflows. Use for DevOps, platform, container,

Last verified on: 2026-10-06

Quick Facts

Category design
Works With GitHub Copilot, Claude
Source github/awesome-copilot
Stars ⭐ 34.1k
Last Verified 2026-10-06
Risk Level Low
mkdir -p ./skills/gem-devops-guidelines && curl -sfL https://raw.githubusercontent.com/github/awesome-copilot/main/skills/gem-devops-guidelines/SKILL.md -o ./skills/gem-devops-guidelines/SKILL.md

Run in terminal / PowerShell. Requires curl (Unix) or PowerShell 5+ (Windows).

Skill Content

# DevOps Guidelines


Apply only the sections relevant to the workload, provider, environment, and acceptance criteria. Skip Docker, Kubernetes, mobile, production, rollback, health, feature-flag, and security checks when they do not apply.


Deployment strategy


- Rolling (default): gradual, zero-downtime replacement.

- Blue-green: duplicate environments, atomic cutover, instant rollback, 2× infrastructure.

- Canary: route a small percentage first; requires traffic splitting.


Docker


- Pin specific base-image tags (for example `node:22-alpine`); NEVER use `:latest`.

- Use multi-stage builds and a non-root user. Copy dependencies first for caching.

- `.dockerignore`: `node_modules`, `.git`, tests. Define `HEALTHCHECK` and resource limits.


Kubernetes


Configure startup, readiness, and liveness probes with workload-appropriate initial delays and thresholds.


CI/CD


- PR: lint -> typecheck -> unit -> integration -> preview.

- Main: build -> staging -> smoke -> production.


Health and shutdown


- Simple: `GET /health` -> `{ "status": "ok" }`.

- Detailed: dependencies, uptime, version.

- Services MUST expose meaningful health and gracefully handle `SIGTERM` when the workload requires it.


Configuration


Use environment variables (Twelve-Factor), separated by environment. Validate at startup and fail fast. NEVER commit secrets or hard-code `NODE_ENV=production`.


Rollback


Kubernetes: `kubectl rollout undo`. Vercel: `vercel rollback`. Docker: redeploy the previous pinned image.


Feature Flags


- Lifecycle: create -> enable -> 5% -> 25% -> 50% -> 100% -> remove flag and dead code.

- Every flag MUST have an owner, expiration, and rollback trigger. Remove within two weeks.


Checklists


- Pre-deploy, when applicable: passing tests, code review, environment variables, migrations, rollback plan.

- Post-deploy services: healthy, monitored, old pods terminated, outcome documented.

- Production services: passing tests; no hardcoded secrets; JSON logs; meaningful health; pinned versions; validated environment variables; resource limits; TLS; CVE scan; CORS; rate limiting; CSP/HSTS/X-Frame-Options; tested rollback; runbook; on-call.

- Apply security/CVE checks to executable or security-sensitive workloads.


Mobile Deployment


- EAS: `eas build:configure`; `eas build -p ios|android --profile preview`; `eas update --branch production`; `--auto-submit`.

- Fastlane: iOS `match`/`cert`/`sigh`/`pilot`; Android Gradle/`supply`.

- Keep credentials in environment/secret storage, never Git. Automate iOS development/distribution signing with `fastlane match`; use `keytool` and Google Play App Signing for Android.

- TestFlight: internal instant; external 90 days/100 testers. Google Play: internal/beta/production. Expect 1–7 days for review.

- Rollback: EAS `eas update:rollback`; native release -> revert build; store release -> reduce phased rollout.

🎯 Best For

  • Engineering teams doing code reviews
  • Open source maintainers
  • UI designers
  • Product designers
  • GitHub Copilot users

💡 Use Cases

  • Reviewing pull requests for security vulnerabilities
  • Checking code style consistency
  • Generating component mockups
  • Creating design system tokens

📖 How to Use This Skill

  1. 1

    Install the Skill

    Copy the install command from the Terminal tab and run it. The SKILL.md file downloads to your local skills directory.

  2. 2

    Load into Your AI Assistant

    Open GitHub Copilot or Claude and reference the skill. Paste the SKILL.md content or use the system prompt tab.

  3. 3

    Apply Gem-Devops-Guidelines to Your Work

    Provide context for your task — paste source material, describe your audience, or share existing work to guide the AI.

  4. 4

    Review and Refine

    Edit the AI output for accuracy, tone, and completeness. Add human insight where the AI lacks context.

❓ Frequently Asked Questions

Does this skill check for OWASP Top 10?

Security-focused review skills often include OWASP checks. Check the skill content for specific vulnerability categories covered.

Does this work with Figma?

Some design skills integrate with Figma plugins. Check the Works With section for supported tools.

Does Gem-Devops-Guidelines generate production-ready design specs?

It generates detailed specifications that developers can use directly. Review and adjust for your specific design system.

How do I install Gem-Devops-Guidelines?

Copy the install command from the Terminal tab and run it. The skill downloads to ./skills/gem-devops-guidelines/SKILL.md, ready to use.

Can I customize this skill for my team?

Absolutely. Edit the SKILL.md file to add team-specific instructions, examples, or workflows.

⚠️ Common Mistakes to Avoid

Blindly accepting AI suggestions

Always verify AI-generated review comments. Some suggestions may not apply to your specific codebase conventions.

Skipping usability testing

AI-generated designs should be validated with real users before development.

Not reading the full skill

Skills contain important context and edge cases beyond the quick start.

🔗 Related Skills