🐳
DevOpsPython

Hadolint Dockerfile Linting

by AgentSecOps

Hadolint Dockerfile Linting is a DevOps skill for Claude Code, published by AgentSecOps in SecOpsAgentKit.

204 stars39 forkson AgentSecOps/SecOpsAgentKitAdded 2026/09/05+1% in starsRepository updated 2026/04/15
agentsai-agentsanthropicappsecclaude-codedastdevsecopsllm-toolssastsecuritysecurity-automationsecurity-toolsshift-leftvulnerability-scanning
Install in seconds
Install Hadolint Dockerfile Linting
Copy Hadolint Dockerfile Linting into your Claude Code skills folder. Run the command in your terminal, or review the source on GitHub before installing.
terminal
npx degit https://github.com/AgentSecOps/SecOpsAgentKit/tree/main/skills/devsecops/container-hadolint ~/.claude/skills/container-hadolint

Requires Node.js. Downloads this skill only — not the rest of the repository — into your Claude Code skills folder.

Without Node.js

git clone https://github.com/AgentSecOps/SecOpsAgentKit.git

Clones the whole repository, then copy the skill’s own directory into your skills folder yourself.

In this catalog

Source file
skills/devsecops/container-hadolint/SKILL.md in AgentSecOps/SecOpsAgentKit
Installs to
~/.claude/skills/container-hadolint
Collection
One of 25 skills cataloged from this repository
Category
DevOps973 skills

What Hadolint Dockerfile Linting does

Hadolint Dockerfile Linting scans Dockerfiles for security misconfigurations, anti-patterns, and CIS Docker Benchmark issues. Use it in development or CI to catch unsafe instructions and get remediation guidance before images are built.

Hadolint Dockerfile Linting is cataloged under DevOps on DirSkills. Hadolint Dockerfile Linting comes from a repository tagged agents, ai-agents, anthropic, appsec and claude-code.

Documentation

README

Dockerfile Security Linting with Hadolint

Overview

Hadolint is a Dockerfile linter that validates container build files against security best practices and the CIS Docker Benchmark. It analyzes Dockerfile instructions to identify misconfigurations, anti-patterns, and security vulnerabilities before images are built and deployed.

Hadolint integrates ShellCheck to validate RUN instructions, ensuring shell commands follow security best practices. With 100+ built-in rules mapped to CIS Docker Benchmark controls, Hadolint provides comprehensive security validation for container images.

Quick Start

Install Hadolint

This is the opening of the README. Read the full README on GitHub.

Commands Hadolint Dockerfile Linting provides

Slash commands named in this skill’s SKILL.md, listed in the order they first appear.

  • /app

Frequently asked about Hadolint Dockerfile Linting

  • What else does AgentSecOps publish alongside Hadolint Dockerfile Linting?

    Hadolint Dockerfile Linting is one of 25 skills that DirSkills catalogs from AgentSecOps/SecOpsAgentKit, the repository it ships in. Its siblings there include Api Spectral, Bandit Python SAST and Black Duck SCA. Each one is a separate skill with its own page in this directory, installs the same way Hadolint Dockerfile Linting does, and is maintained by AgentSecOps in that same repository. The rest of the collection is listed on the AgentSecOps/SecOpsAgentKit page.

  • How does Hadolint Dockerfile Linting compare to other DevOps skills?

    Hadolint Dockerfile Linting ranks #855 by stars among the 973 DevOps skills in this catalog. The most-starred ones next to it are Backend Patterns, API Connector Builder and Migration. DirSkills ranks by the star count of the repository each skill ships in, so that order reflects how popular those repositories are rather than any review of Hadolint Dockerfile Linting against them. Open each page to compare what they document and how they install.

More from AgentSecOps/SecOpsAgentKit

Hadolint Dockerfile Linting is one of 25 skills cataloged on DirSkills from AgentSecOps/SecOpsAgentKit.

See all 25 skills
🔍
50m ago

Api Spectral

Api Spectral lints OpenAPI, AsyncAPI, and Arazzo specifications for security issues and design flaws. Use it to enforce API governance, OWASP API Security Top 10 checks, and custom rules in CI/CD pipelines.
Quality
20439
🛡️
50m ago

Bandit Python SAST

Bandit Python SAST scans Python code for security vulnerabilities and anti-patterns using Bandit. Use it to find hardcoded secrets, injection risks, weak crypto, and other issues, then generate severity-based reports for remediation and CI/CD checks.
Quality
20439
🛡️
50m ago

Black Duck SCA

Black Duck SCA scans dependencies for vulnerabilities, license compliance risks, and supply chain threats. Use it to assess open source components, map findings to CVE/CWE/OWASP, and integrate checks into CI/CD.
DevOps
20439
🛡️
50m ago

Checkov IaC Security

Checkov IaC Security scans Terraform, CloudFormation, Kubernetes, Dockerfiles, and ARM templates for misconfigurations, secrets, and compliance issues. Use it to validate infrastructure before deployment and generate audit reports.
DevOps
20439
🛡️
50m ago

Container Vulnerability Scanning

Container Vulnerability Scanning uses Grype to scan images, filesystems, and SBOMs for known vulnerabilities. Use it in CI/CD or security reviews to prioritize fixes with CVSS, EPSS, and CISA KEV data.
Quality
20439
🛡️
50m ago

DefectDojo Vulnerability Management

DefectDojo Vulnerability Management aggregates scanner findings into DefectDojo for deduplication, SLA tracking, and compliance reporting. Use it to manage vulnerability backlogs and remediation across products, teams, and pipelines.
DevOps
20439