All skills
microsoft avatar

/azure-validate

@e0a67fd
by microsoftmicrosoft/skills3.1k stars
351

Pre-deployment validation for Azure readiness. Run deep checks on configuration, infrastructure (Bicep or Terraform), RBAC role assignments, managed identity permissions, and prerequisites before deploying. WHEN: validate my app, check deployment readiness, run preflight checks, verify configuration, check if ready to deploy, validate azure.yaml, validate Bicep, test before deploying, troubleshoot deployment errors, validate Azure Functions, validate function app, validate serverless deployment, verify RBAC roles, check role assignments, review managed identity permissions, what-if analysis, validate Container Apps deployment.

Use this Skill: https://skilld.dev/gh/microsoft/skills/azure-validate

This session only. Nothing lands on disk.

referencespolicy-validation.md

≈374 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Azure Policy Validation

How to Validate Policies

1. Get Subscription ID

Retrieve your current Azure subscription ID:

az account show --query id -o tsv

2. Validate Policies

Call the Azure MCP Policy tool to retrieve policies for your subscription:

mcp_azure_mcp_policy(command: "list", parameters: { subscription_id: "<subscription-id>" })

Replace <subscription-id> with the actual subscription ID obtained from step 1.

Review Policy Compliance

When validating Azure policies for your subscription:

  • Check for policy violations — Identify any resources or configurations that don't comply with assigned policies
  • Verify organizational compliance — Ensure the planned deployment meets all organizational policy requirements
  • Address policy conflicts — Resolve any policy issues before proceeding to deployment

Common Policy Issues

Issue Resolution
Non-compliant resource SKUs Update resource SKUs to comply with allowed values
Missing required tags Add required tags to resources in your infrastructure code
Disallowed resource types Replace with allowed alternatives or request policy exception
Location restrictions Deploy to allowed regions only
Network security violations Update NSG rules, firewall settings, or virtual network configurations

Next Steps

Only proceed to deployment after all policy violations are resolved and compliance is confirmed.

Source: SKILL.md on GitHub

1 warning15d4 checks · Risk SAFE
  • Gen Agent Trust Hub15d

    This skill provides a structured workflow for validating Azure deployments, covering Bicep, Terraform, and Azure Developer CLI (AZD) projects. It uses several helper scripts to automate configuration checks and infrastructure validation. The skill includes security considerations such as the execution of system commands and the processing of project source files, which are used within its intended validation scope.

  • Socket15d

    No alerts

  • Snyk15d

    Risk: LOW · No issues

  • Runlayer7mo

    14/14 files flagged

Signed by skilld at e0a67fd. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 20 hours ago.

Activeupdated 2 months ago
metadata
{
  "author": "Microsoft",
  "version": "1.2.2"
}

README badge

README badge for microsoft/skills/azure-validate