ci-cd-pipeline
Use when designing, debugging, or fixing CI/CD pipelines — GitHub Actions, GitLab CI, Jenkins
Works with
---
name: ci-cd-pipeline
description: Use when designing, debugging, or fixing CI/CD pipelines — GitHub Actions, GitLab CI, Jenkins
license: MIT
---
# CI/CD Pipeline
## Mode Detection
- **Repo mode** — templates in `tooling/ci/`. Scaffold or modify pipeline configs.
- **Chat mode** — user pastes pipeline config or failure logs. Diagnose and provide corrected config.
## Pipeline Design Principles
1. **Fast feedback** — lint and test before build; build before deploy
2. **Fail fast** — stop the pipeline at the first failure
3. **Secrets via secret store** — never hardcode credentials
4. **Idempotent deploys** — running the same deploy twice should be safe
5. **Gate production** — require passing tests before any production deploy
## Standard Pipeline Stages
```
lint → test → build → push image → deploy staging → smoke test → deploy production
```
## GitHub Actions
### Debugging failures
```bash
# Enable debug logging by setting repository secret:
ACTIONS_STEP_DEBUG = true
ACTIONS_RUNNER_DEBUG = true
```
**Common issues:**
| Issue | Fix |
|---|---|
| `Context access might be invalid` | Check secret/var name spelling |
| `Resource not accessible by integration` | Add `permissions:` block to workflow |
| `Process completed with exit code 1` | Read that step's full log output |
| Workflow not triggering | Check `on:` trigger matches branch/event |
### Useful patterns
```yaml
# Run only on main branch
on:
push:
branches: [main]
# Matrix builds
strategy:
matrix:
node-version: [18, 20, 22]
# Reuse secrets
env:
DATABASE_URL: ${{ secrets.DATABASE_URL }}
```
## GitLab CI
**Common issues:**
| Issue | Fix |
|---|---|
| Job stuck in pending | Check runner availability and tags |
| `artifacts` not found in later stage | Define `artifacts:` in the producing job |
| Cache not working | Check `cache: key` is consistent |
## Jenkins
**Common issues:**
| Issue | Fix |
|---|---|
| Build never starts | Check agent availability and labels |
| Credentials not found | Verify credential ID in Jenkins credentials store |
| Workspace dirty | Add `cleanWs()` at start of pipeline |
## Tooling Templates
- `tooling/ci/github-actions/` — reusable workflow templates
- `tooling/ci/gitlab-ci/` — .gitlab-ci.yml templates
- `tooling/ci/jenkins/` — Jenkinsfile templates
- `tooling/ci/starters/` — full CI/CD setups by stackMore Deployment & CI/CD skills
azure-enterprise-infra-planner
microsoft/azure-skills
Architect and provision enterprise Azure infrastructure from workload descriptions. For cloud architects and platform engineers planning networking, identity, security, compliance, and multi-resource topologies with WAF alignment. Generates Bicep or Terraform directly (no azd). WHEN: 'plan Azure infrastructure', 'architect Azure landing zone', 'design hub-spoke network', 'plan multi-region DR topology', 'set up VNets firewalls and private endpoints', 'subscription-scope Bicep deployment', 'Azure Backup for VM workloads'. PREFER azure-prepare FOR app-centric workflows.
azure-kubernetes-app-deploy
microsoft/azure-skills
Use when deploying an existing web application or API to an already-running Azure Kubernetes Service cluster. Detects the framework, generates a Dockerfile and Kubernetes manifests, validates against AKS Deployment Safeguards, and deploys with verification. WHEN: deploy app to AKS, deploy to existing AKS cluster, containerize app for Kubernetes, generate K8s manifests for Azure, set up CI/CD for AKS, my AKS deployment is failing safeguard checks, I have a Django/Express/Spring Boot app to run on AKS. DO NOT USE FOR: creating or provisioning an AKS cluster (use azure-kubernetes), assessing migration to AKS Automatic (use azure-kubernetes-automatic-readiness), or deploying to non-AKS targets like Web Apps, Container Apps, or Functions.
finetuning
microsoft/azure-skills
Fine-tune models on Microsoft Foundry using SFT (supervised), DPO (preference), or RFT (reinforcement with graders). Covers dataset preparation, training job submission, deployment, and evaluation. USE FOR: fine-tune, SFT, DPO, RFT, training data, grader, distillation, fine-tuned model, training job, large file upload, calibrate grader, deploy fine-tuned model, evaluate fine-tuned model. DO NOT USE FOR: general model deployment without fine-tuning (use deploy-model), agent creation (use agents), prompt optimization without training (use prompt-optimizer).

