All skills
microsoft avatar

/entra-app-registration

@b3c238e
by microsoftmicrosoft/skills3.1k stars
351

Guides Microsoft Entra ID app registration, OAuth 2.0 authentication, and MSAL integration. USE FOR: create app registration, register Azure AD app, configure OAuth, set up authentication, add API permissions, generate service principal, MSAL example, console app auth, Entra ID setup, Azure AD authentication. DO NOT USE FOR: Key Vault secrets (use azure-keyvault-expiration-audit), general Azure resource security guidance.

Use this Skill: https://skilld.dev/gh/microsoft/skills/entra-app-registration

This session only. Nothing lands on disk.

referencessdkazure-keyvault-py.md

≈284 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Key Vault — Python SDK Quick Reference

Condensed from azure-keyvault-py. Full patterns (async clients, cryptographic operations, certificate management, error handling) in the azure-keyvault-py plugin skill if installed.

Install

pip install azure-keyvault-secrets azure-keyvault-keys azure-keyvault-certificates azure-identity

Quick Start

from azure.identity import DefaultAzureCredential
from azure.keyvault.secrets import SecretClient
client = SecretClient(vault_url="https://<vault>.vault.azure.net/", credential=DefaultAzureCredential())

Best Practices

  • Use DefaultAzureCredential for local development only. In production, use ManagedIdentityCredential — see auth-best-practices.md
  • Use managed identity in Azure-hosted applications
  • Enable soft-delete for recovery (enabled by default)
  • Use RBAC over access policies for fine-grained control
  • Rotate secrets regularly using versioning
  • Use Key Vault references in App Service/Functions config
  • Cache secrets appropriately to reduce API calls
  • Use async clients for high-throughput scenarios

Source: SKILL.md on GitHub

1 warning15d4 checks · Risk SAFE
  • Gen Agent Trust Hub15d

    This skill provides comprehensive and secure guidance for Microsoft Entra ID app registration and integration. It emphasizes industry best practices, such as utilizing managed identities and secure secret storage, while referencing official Microsoft libraries and standard tooling.

  • Socket15d

    No alerts

  • Snyk15d

    Risk: LOW · No issues

  • Runlayer7mo

    16/16 files flagged

Signed by skilld at b3c238e. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated 2 months ago
metadata
{
  "author": "Microsoft",
  "version": "1.2.1"
}

README badge

README badge for microsoft/skills/entra-app-registration