Generating Helm ChartsSAFE
Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com.
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
Bundled resources for helm-chart-generator skill
- [ ] chart_template/: A directory containing template files for different types of Kubernetes applications (e.g., web app, database).
- [ ] example_charts/: A directory containing example Helm charts for common use cases.
- [ ] values_schema.json: A JSON schema defining the structure and validation rules for the values.yaml file.
4f83675ca38aOBSERVED · 2026-10-08Host compatibility
What the documentation claims. We have not run a compatibility test.
| Host | Status | Notes |
|---|---|---|
| claude-code | mentioned |
What it tells the agent
The instruction file, verbatim from the audited commit — this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.
--- name: generating-helm-charts description: 'Execute use when generating Helm charts for Kubernetes applications. Trigger with phrases like "create Helm chart", "generate chart for app", "package Kubernetes deployment", or "helm template". Produces production-ready charts with Chart.yaml, values.yaml, templates, and best practices for multi-environment deployments. ' allowed-tools: Read, Write, Edit, Grep, Glob, Bash(helm:*), Bash(kubectl:*) version: 1.25.0 author: Jeremy Longshore <[email protected]> license: MIT tags: - devops - deployment - kubernetes compatibility: Designed for Claude Code --- # Generating Helm Charts ## Overview Generate production-ready Helm 3 charts for Kubernetes applications with Chart.yaml, values.yaml, Go templates, and helper functions. Support multi-environment deployments with values overrides, dependency management, security contexts, health probes, and resource limits following Helm best practices. ## Prerequisites - Helm 3.x installed (`helm version`) - `kubectl` configured with cluster access for testing chart installation - Container images available in a registry accessible from the cluster - Understanding of application resource requirements (CPU, memory, ports, volumes) - Chart repository access if publishing (ChartMuseum, OCI registry, or GitHub Pages) ## Instructions 1. Analyze the application: identify container images, ports, environment variables, volumes, and dependencies 2. Scaffold the chart structure: `Chart.yaml`, `values.yaml`, `templates/`, `charts/`, `.helmignore` 3. Create `Chart.yaml` with `apiVersion: v2`, name, version, appVersion, and dependency declarations 4. Define `values.yaml` with sensible production defaults: replica count, image config, resource limits, ingress settings 5. Build templates using Go template syntax with proper `.Values` references and `_helpers.tpl` for reusable named templates 6. Add health checks: `livenessProbe` and `readinessProbe` in the deployment template with configurable paths and thresholds 7. Configure security context: `runAsNonRoot: true`, `readOnlyRootFilesystem: true`, and drop all capabilities 8. Create environment-specific values files: `values-dev.yaml`, `values-staging.yaml`, `values-prod.yaml` 9. Add `NOTES.txt` with post-install instructions showing how to access the application 10. Validate with `helm lint .` and test rendering with `helm template . --values values-prod.yaml` ## Output - Complete Helm chart directory structure - `Chart.yaml` with metadata and dependencies - `values.yaml` with documented, configurable defaults - Template files: `deployment.yaml`, `service.yaml`, `ingress.yaml`, `configmap.yaml`, `serviceaccount.yaml`, `hpa.yaml` - `_helpers.tpl` with name, label, and selector helper templates - `NOTES.txt` with post-install access instructions - Environment-specific values override files ## Error Handling | Error | Cause | Solution | |-------|-------|---------| | `Chart.yaml: version is required` | Missing or malformed `version` field | Add a valid SemVer version string to Chart.yaml | | `parse error in template` | Go template syntax error (missing `end`, wrong function) | Run `helm template .` to pinpoint the error; check bracket matching and function names | | `dependency not found` | Chart dependency not downloaded | Run `helm dependency update` to fetch dependencies into `charts/` | | `release failed: timed out waiting for condition` | Pods not reaching ready state during install | Check pod logs; verify image exists, resource limits are sufficient, and probes are correct | | `values override not applied` | Wrong values file path or key mismatch | Verify `--values` file path and that keys match the structure in `values.yaml` exactly | ## Examples - "Generate a Helm chart for a Node.js API with 3 replicas, an Nginx ingress, PostgreSQL subchart dependency, and environment-specific values for dev and prod." - "Create a Helm chart for a stateful application with PersistentVolumeClaim, headless service, and configurable storage class." - "Package an existing set of Kubernetes manifests into a Helm chart with parameterized image tag, replica count, and resource limits." ## Resources - Helm documentation: https://helm.sh/docs/ - Chart best practices: https://helm.sh/docs/chart_best_practices/ - Template function reference: https://helm.sh/docs/chart_template_guide/function_list/ - Artifact Hub (chart discovery): https://artifacthub.io/
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (0)
No findings outside the package's declared scope.
Gates applied: no_behavioural_pass.
4f83675ca38afull audit observations/trust-audit/skill/jeremylongshore__generating-helm-charts.json · Report an issue / request a re-scanAudit history
Every audit this skill has had.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-08 | 4f83675ca38a | SAFE | B | 89 | first audit |
Questions
What does the Generating Helm Charts skill do?
Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com.
Is Generating Helm Charts safe to install?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean skill reads B.
What can Generating Helm Charts access on my machine?
The audit observed no filesystem, network or shell use at all in its source.
Which assistants does Generating Helm Charts work with?
Its documentation mentions claude-code. That is what the text claims, not a compatibility test we ran.
How current is this page?
The grade is for one exact copy of the source (4f83675ca38a), read on 2026-10-08. The repository is watched, and a new audit runs when it changes — this is the first audit.