All skills
lukemurraynz avatar

/azure-sre-agent

@2cc2455

Design, configure, review, and operate production-grade Azure SRE Agent capabilities: response plans, scheduled tasks, HTTP triggers, custom agents, autonomous and review workflows, approval guardrails, AMBA observability, source RCA, connectors, MCP, governance hooks, WAF reviews, AI Foundry posture, Digital Native governance, postmortem generation, and KT discipline.

Use this Skill: https://skilld.dev/gh/lukemurraynz/hve-agent-skills/azure-sre-agent

This session only. Nothing lands on disk.

bundlesobservability-ambatemplatesamba-baseline-adoption-plan.md

≈311 tokens on demand. Your agent reads this file only when SKILL.md points to it.

AMBA Baseline Adoption Plan

Scope

  • Management group/subscription: @@MANAGEMENT_GROUP_ID@@
  • Monitoring resource group: @@AMBA_MONITORING_RESOURCE_GROUP@@
  • Action group: @@ACTION_GROUP_NAME@@
  • Workloads/services: @@SERVICE_NAME@@

Adoption Steps

  1. Confirm current AMBA service coverage for each Azure resource type.
  2. Identify already deployed Azure Monitor alerts and compare with AMBA categories.
  3. Decide deployment approach: policy initiative, Terraform/AVM module, Bicep/ARM, or manual import.
  4. Classify each alert as investigate, notify, digest, tune, or candidate for later autonomy.
  5. Map high-value alerts to SRE Agent response plans in Review mode.
  6. Review action groups, alert processing rules, incident platform routing, and reinvestigation cooldown.
  7. Establish noise review and threshold-tuning cadence.
  8. Record exclusions, overrides, and business justification.

Acceptance Criteria

  • AMBA scope and source version are recorded.
  • Alert owners and action groups are known.
  • No high-volume/noisy alert routes directly to Autonomous mode.
  • Policy assignments and remediation identity are least privilege.
  • SRE Agent response plans include rollback/validation for any write-capable action.

Source: SKILL.md on GitHub

No alerts8d3 checks · Risk SAFE
  • Gen Agent Trust Hub8d

    The Azure SRE Agent skill provides a production-grade framework for managing Azure infrastructure using AI agents. It incorporates extensive safety documentation, approval-based hooks, and least-privilege role templates. The 'low' verdict is assigned due to the inherent risk of indirect prompt injection when the agent processes external incident data and source code, a necessary function for its SRE capabilities.

  • Socket8d

    No alerts

  • Snyk8d

    Risk: LOW · No issues

Signed by skilld at 2cc2455. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub last month.

Steadyupdated last month
compatibility
Azure SRE Agent; GitHub Copilot agent skills; new projects only
Other metadata
metadata
{
  "last_verified": "2026-08-25",
  "version": "2.23.3",
  "risk": "critical",
  "last_updated": "2026-08-25"
}

README badge

README badge for lukemurraynz/hve-agent-skills/azure-sre-agent