All skills
microsoft avatar

/azure-app-onboard

@cda1f27 official

End-to-end orchestrator: from a business idea, app idea, or existing app to running Azure deployment with cost estimates and pre-deploy approval. Analyzes your app, auto-detects the right Azure services, scaffolds infrastructure code, and deploys — tailored to your app, not a template. Handles moving existing apps to Azure without rewriting or with minimal changes. WHEN: bring your app to Azure, plan my app, cost to run, is my code ready to deploy, deploy my app to the cloud, deploy all my services, what Azure services do I need, plan my Azure deployment, deploy my new app to Azure, one-click deploy, I have an app and want it on Azure, migrate my app to Azure, help me get started, build an app, no code yet, starter project. DO NOT USE FOR: use azd for deployment(use azure-deploy), optimizing existing costs (use cost-optimization), code readiness checks only (use azure-app-onboard-prereq).

Use this Skill: https://skilld.dev/gh/microsoft/github-copilot-for-azure/azure-app-onboard

This session only. Nothing lands on disk.

preparereferencessku-matrix.md

≈823 tokens on demand. Your agent reads this file only when SKILL.md points to it.

SKU Selection Matrix

Select SKU based on context.json.intent.budget. Cross-reference with intent.scale for right-sizing.

Budget Tiers

⚠️ F1 (Free) limitations: 1 GB RAM, shared compute (60 min/day CPU), no custom domain, no always-on, no deployment slots, no VNet integration. Only suitable for low-traffic dev/test. Production apps → B1 minimum.

Service cost-optimized balanced performance
Container Apps Consumption (scale-to-zero) Consumption Dedicated
App Service F1 (Free) B1 / S1 P1v3
Azure SQL Basic (5 DTU) Standard (S0) Premium / Serverless
Cosmos DB Serverless Provisioned (400 RU) Provisioned (autoscale)
Storage Standard_LRS Standard_GRS Premium_LRS
Static Web Apps Free Standard Standard
Key Vault Standard Standard Premium (HSM)
Service Bus Basic Standard Premium
Redis Cache Basic C0 Standard C1 Premium P1
Functions Consumption Flex Consumption Premium EP1
Log Analytics PerGB2018 PerGB2018 PerGB2018 (dedicated cluster)

⚠️ Log Analytics Free SKU is deprecated. ARM rejects it with some API versions and retention settings. Always use PerGB2018 — first 5 GB/month is free anyway.

Modifier Rules

  • intent.scale = "Large" (100K+ users) → bump minimum one tier above cost-optimized
  • intent.budget = "performance" + intent.scale = "Small" → don't over-provision; use balanced tier
  • Policy denies a SKU → fall back to next available tier, add to assumptions[]
  • Cosmos DB Serverless: max 1K RU/s burst, no geo-replication — only for intermittent/dev workloads. Sustained read-heavy → Provisioned.

Default Behavior

  • Single-component app + cost-optimized → cheapest viable SKU (App Service F1, Static Web Apps Free)
  • Simple web app with no DB → $0–$15/month
  • Always output exact SKU codes: "App Service F1 (Free)" not "Free tier"

Auto-Cheapest for Fast-Track

⛔ If prereq-output.json.fastTrackEligible == true AND context.json.intent.budget is unset, treat as cost-optimized. Fast-track means single-component + no DB + no auth + no Dockerfile — by definition this app fits the cheapest tier. Pick App Service F1 (Free) for dynamic apps that need a runtime (Node.js/Python starter templates), or Static Web Apps Free for pure static HTML/JS/CSS with no server-side runtime. The user still sees the SKU + monthly cost in the scaffold approval gate — they can override via "Edit plan" if they want to upgrade. Do NOT ask the user about budget unless they mention cost first (per intent-gathering.md).

⛔ Fast-track free promise can degrade. If the cheapest free tier is unavailable during deploy prep (no F1 quota AND Static Web Apps Free cap reached — see sku-quota-validation.md § After Checking), degrade to the cheapest AVAILABLE tier — do NOT name or assume a specific paid SKU; let the live quota results decide which is cheapest-available. Record an assumptions[] note that states clearly WHY fast-track could not stay free, so the approval gate presents the plan with the resulting cost instead of silently upgrading.

Source: SKILL.md on GitHub

No alerts22d3 checks · Risk SAFE
  • Gen Agent Trust Hub22d

    This skill includes some security considerations such as the processing of untrusted project files to generate deployment scripts and the dynamic generation of infrastructure code. While these warrant review, they are used within the skill's intended functionality to automate Azure onboarding. See detailed analysis for context.

  • Socket22d

    No alerts

  • Snyk22d

    Risk: LOW · No issues

Signed by skilld at cda1f27. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 20 hours ago.

Activeupdated last week
metadata
{
  "author": "Microsoft",
  "version": "0.0.0-placeholder"
}

README badge

README badge for microsoft/github-copilot-for-azure/azure-app-onboard