All skills
microsoft avatar

/azure-resource-visualizer

@72b7dda official

Analyze Azure resource groups and generate detailed Mermaid architecture diagrams showing the relationships between individual resources. WHEN: create architecture diagram, visualize Azure resources, show resource relationships, generate Mermaid diagram, analyze resource group, diagram my resources, architecture visualization, resource topology, map Azure infrastructure.

Use this Skill: https://skilld.dev/gh/microsoft/github-copilot-for-azure/azure-resource-visualizer

This session only. Nothing lands on disk.

referencesazure-resource-graph.md

≈620 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Azure Resource Graph Queries for Resource Discovery

Azure Resource Graph (ARG) enables fast, cross-subscription resource querying using KQL via az graph query. Use it for bulk resource discovery and relationship mapping.

How to Query

Use the extension_cli_generate MCP tool to generate az graph query commands:

mcp_azure_mcp_extension_cli_generate
  intent: "query Azure Resource Graph to <describe what you want to find>"
  cli-type: "az"

Or construct directly:

az graph query -q "<KQL>" --query "data[].{name:name, type:type}" -o table

⚠️ Prerequisite: az extension add --name resource-graph

Key Tables

Table Contains
Resources All ARM resource instances (name, type, location, properties, tags)
ResourceContainers Subscriptions, resource groups, management groups

Resource Discovery Patterns

List all resources by type:

Resources | summarize count() by type | order by count_ desc

Inventory by location and type:

Resources | summarize count() by type, location | order by type asc

List all resources in a resource group with details:

Resources
| where resourceGroup =~ '<rg-name>'
| project name, type, location, sku.name, kind

Cross-subscription resource inventory with subscription names:

Resources
| join kind=leftouter (
    ResourceContainers
    | where type == 'microsoft.resources/subscriptions'
    | project subscriptionId, subscriptionName=name
) on subscriptionId
| project name, type, location, resourceGroup, subscriptionName

Discover network relationships (VNets, subnets, NICs):

Resources
| where type =~ 'microsoft.network/virtualnetworks'
| mv-expand subnet=properties.subnets
| project vnetName=name, subnetName=subnet.name, addressPrefix=subnet.properties.addressPrefix, resourceGroup

Find App Services and their plans:

Resources
| where type =~ 'microsoft.web/sites'
| project name, kind, location, serverFarmId=properties.serverFarmId, resourceGroup

Tips

  • Use =~ for case-insensitive type matching (resource types are lowercase)
  • Navigate properties with properties.fieldName
  • Use --first N to limit result count
  • Use --subscriptions to scope to specific subscriptions
  • Use mv-expand to flatten arrays (e.g., subnets, IP configurations)

Source: SKILL.md on GitHub

1 warning16d5 checks · Risk SAFE
  • Gen Agent Trust Hub16d

    This skill provides architecture visualization for Azure environments and includes strong safety guidelines, such as instructions to use placeholders for secrets. It includes a potential consideration regarding indirect prompt injection, which is a common characteristic of skills that process external metadata. See the detailed analysis for more information.

  • Socket16d

    No alerts

  • Snyk16d

    Risk: MEDIUM · 1 issue

  • Runlayer7mo

    4 files scanned · No issues

  • ZeroLeaks5mo

    Score: 93/100 · 2 sections analyzed

Signed by skilld at 72b7dda. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated 5 months ago
metadata
{
  "author": "Microsoft",
  "version": "0.0.0-placeholder"
}
  • Infrastructure
  • azure
  • architecture
  • mermaid
  • resource-groups
  • visualization
  • diagrams
  • azure-cli

README badge

README badge for microsoft/github-copilot-for-azure/azure-resource-visualizer

Analyzes Azure resource groups and generates Mermaid architecture diagrams showing resource types, configurations, and relationships. Useful for documenting existing infrastructure, understanding data flows between services, and identifying dependencies across compute, networking, storage, and identity layers.

Generated from the current SKILL.md.

Does this skill work with all Azure resource types?
The skill analyzes all resources in a specified resource group using Azure MCP tools or CLI, but the quality of relationship mapping depends on whether those resources expose their dependencies through Azure APIs. Well-integrated services like App Service, Functions, Storage, and Databases will be fully mapped; custom or third-party resources may have limited relationship detection.
Can this skill analyze resources across multiple resource groups or subscriptions?
The skill focuses on a single resource group at a time, but it can use Azure Resource Graph queries for cross-subscription inventory discovery. Cross-resource-group dependencies are noted in the diagram as external references.
Will secret values appear in the generated diagrams?
No. The skill explicitly replaces all secret values—keys, connection strings, Key Vault secrets—with meaningful placeholder names in the diagrams and documentation.
What format does the skill output?
A markdown file containing a resource inventory table, detailed Mermaid architecture diagram with logical grouping, relationship explanations, and notes. The diagram uses top-to-bottom or left-to-right layout depending on architecture width.
Does this skill modify or delete Azure resources?
No. The skill performs read-only analysis only and will never modify or delete resources.

Generated from the current SKILL.md. These answers refresh after source changes.