Cli based docker/kubernetes incident response playbook

we have cli based linux investigation playbook before. do we have similar complete command list to identify docker/kubernetes compromise, can anyone share the link, thanks