{
  "id": "gcp-cloudbuild-deploy-cicd-operator",
  "name": "GCP Cloud Build Deploy CI/CD Operator",
  "type": "skill",
  "provider": "gcp",
  "harnesses": [
    "codex",
    "claude-code",
    "cursor",
    "gemini",
    "kiro",
    "other"
  ],
  "summary": "Build and operate CI/CD pipelines using Cloud Build, Cloud Deploy delivery pipelines, Artifact Registry, SLSA provenance generation, and release gating with approval workflows.",
  "source_type": "original",
  "official_docs": [
    "https://cloud.google.com/build/docs/overview",
    "https://cloud.google.com/deploy/docs/overview",
    "https://cloud.google.com/artifact-registry/docs/overview",
    "https://cloud.google.com/build/docs/securing-builds/view-build-provenance"
  ],
  "security_notes": "Cloud Build service accounts are commonly over-privileged — minimum required permissions are Cloud Run Admin + Artifact Registry Writer + GKE Developer. SLSA provenance combined with Binary Authorization prevents tampered artifacts from reaching production.",
  "last_verified": "2026-05-08",
  "path": "skills/gcp/gcp-cloudbuild-deploy-cicd-operator",
  "author": "github: VincentChuWaiChow",
  "version": "0.1.0"
}
