0193
commit-message-storyteller
Narrative Conventional Commit messages that explain intent, impact, and logical change boundaries.
- Main limitation
- A diff often cannot reveal the true motivation, user impact, or issue context.
- First risk
- Incorrect intent inferred from code · Medium
- Source
- Pinned · 318066d2
Open full profile ↗0292
supply-chain-risk-auditor
Measured dependency risk reports covering advisories, maintainers, abandonment, and install scripts.
- Main limitation
- Does not fully parse yarn.lock, pnpm-lock.yaml, poetry.lock, or unsupported ecosystems.
- First risk
- Registry and repository metadata exposure · High
- Source
- Pinned · 9b281335
Open full profile ↗0390
pr-screenshots
Matched before-and-after visual evidence for pull requests, including upload and sizing guidance.
- Main limitation
- GitHub has no clean public API for PR-description image upload in this workflow.
- First risk
- Sensitive data in shared screenshots · High
- Source
- Pinned · 318066d2
Open full profile ↗0489
microsoft-foundry
Microsoft Foundry is the official Azure workflow router for creating, deploying, invoking, evaluating, observing, optimizing, and fine-tuning AI agents and models.
- Main limitation
- The mandatory setup and specialized subskills must be available and read before the requested workflow begins.
- First risk
- Costly or production-impacting cloud changes · High
- Source
- Pinned · ea76537e
Open full profile ↗0589
azure-diagnostics
Azure Diagnostics is Microsoft's systematic production-triage workflow for moving from symptoms to resource health, logs, metrics, recent changes, and service-specific next steps.
- Main limitation
- Useful diagnosis requires accurate Azure resource context, time windows, telemetry retention, and sufficient read permissions.
- First risk
- Production remediation without sufficient evidence · High
- Source
- Pinned · ea76537e
Open full profile ↗0689
azure-ai
Azure AI is Microsoft's compact service guide for Azure AI Search, Speech, Azure OpenAI, and Document Intelligence.
- Main limitation
- It is a broad routing and reference Skill, not an end-to-end provisioning or production deployment workflow.
- First risk
- Sensitive content and billable AI operations · High
- Source
- Pinned · ea76537e
Open full profile ↗0789
azure-deploy
Azure Deploy executes production deployment for an application that has already completed Azure Prepare and Azure Validate.
- Main limitation
- It cannot prepare a new application or generate missing infrastructure; Azure Prepare owns that work.
- First risk
- Production and infrastructure changes · High
- Source
- Pinned · ea76537e
Open full profile ↗0889
azure-prepare
Azure Prepare plans and generates azd-based Azure deployment assets, including azure.yaml, Bicep or Terraform infrastructure, and Dockerfiles.
- Main limitation
- It is specifically for azd workflows or projects that already contain azure.yaml, not every Azure deployment method.
- First risk
- Incorrect generated infrastructure · High
- Source
- Pinned · ea76537e
Open full profile ↗0989
azure-validate
Azure Validate is the mandatory pre-deployment gate between Azure Prepare and Azure Deploy.
- Main limitation
- It requires an Azure Prepare plan already approved or later; it is not a standalone first step.
- First risk
- False readiness from skipped evidence · High
- Source
- Pinned · ea76537e
Open full profile ↗1089
azure-storage
Azure Storage is Microsoft's guide to Blob Storage, File Shares, Queue Storage, Table Storage, and Data Lake, including hot, cool, cold, and archive tiers plus lifecycle management.
- Main limitation
- It does not cover SQL databases, Cosmos DB design, Event Hubs, or Service Bus workflows.
- First risk
- Data exposure, overwrite, or lifecycle loss · High
- Source
- Pinned · ea76537e
Open full profile ↗1189
entra-app-registration
Entra App Registration guides Microsoft Entra ID application registration, OAuth 2.0 configuration, API permissions, service principals, and MSAL integration.
- Main limitation
- It focuses on app identity and OAuth, not general Azure resource security or Key Vault secret auditing.
- First risk
- Over-privileged app or leaked credential · High
- Source
- Pinned · ea76537e
Open full profile ↗1289
appinsights-instrumentation
AppInsights Instrumentation is a reference Skill for adding Azure Application Insights telemetry patterns and SDK configuration to supported web applications.
- Main limitation
- It is guidance only; requests to add or change components must route to Azure Prepare.
- First risk
- Sensitive or excessive telemetry · High
- Source
- Pinned · ea76537e
Open full profile ↗1389
azure-resource-lookup
Azure Resource Lookup is a read-oriented inventory and discovery workflow for listing and finding Azure resources across subscriptions or resource groups.
- Main limitation
- It does not deploy, modify, or delete resources, and orphan detection is not authorization to remove anything.
- First risk
- Broad infrastructure disclosure · Medium
- Source
- Pinned · ea76537e
Open full profile ↗1489
azure-compliance
Azure Compliance runs configuration and security assessments through Azure Quick Review, Key Vault expiration inspection, and targeted Resource Graph queries.
- Main limitation
- It assesses configuration and best practices; it is not a legal opinion, formal certification, or guarantee of regulatory compliance.
- First risk
- Sensitive audit output or false assurance · High
- Source
- Pinned · ea76537e
Open full profile ↗1589
azure-aigateway
Azure AI Gateway configures Azure API Management as a governance layer for AI models, MCP tools, and agents.
- Main limitation
- It requires Azure CLI for configuration and testing, and does not provision the APIM instance itself.
- First risk
- Misconfigured gateway policy or exposed key · High
- Source
- Pinned · ea76537e
Open full profile ↗1689
azure-kusto
Azure Kusto queries and analyzes Azure Data Explorer data with KQL for logs, telemetry, time series, IoT, security, and performance investigations.
- Main limitation
- Useful results depend on knowing the correct cluster, database, schema, time range, and field semantics.
- First risk
- Sensitive data exposure or expensive query · High
- Source
- Pinned · ea76537e
Open full profile ↗1789
azure-resource-visualizer
Azure Resource Visualizer inventories a selected resource group, inspects configuration and dependencies, and creates a Markdown architecture document with a detailed Mermaid diagram.
- Main limitation
- Some relationships are inferred from configuration and naming; the diagram is documentation, not runtime traffic proof.
- First risk
- Infrastructure topology disclosure · High
- Source
- Pinned · ea76537e
Open full profile ↗1889
azure-messaging
Azure Messaging is a troubleshooting guide for Azure Event Hubs and Service Bus SDKs.
- Main limitation
- It covers SDK troubleshooting for Event Hubs and Service Bus, not Event Grid or general queue architecture design.
- First risk
- Message loss, duplication, or secret leakage · High
- Source
- Pinned · ea76537e
Open full profile ↗1989
azure-rbac
Azure RBAC guides discovery and management of Azure role definitions and role assignments for users, groups, service principals, and managed identities.
- Main limitation
- Azure RBAC does not cover every Microsoft Entra directory role, application consent, or service-specific access model.
- First risk
- Privilege escalation or access outage · High
- Source
- Pinned · ea76537e
Open full profile ↗2089
azure-compute
Azure Compute is the workflow router for bare Azure Virtual Machine and Virtual Machine Scale Set decisions.
- Main limitation
- It is for bare VM or VMSS infrastructure, not Docker services, web apps, APIs, or serverless application deployment.
- First risk
- Costly, insecure, or unavailable compute · High
- Source
- Pinned · ea76537e
Open full profile ↗2189
azure-cloud-migrate
Azure Cloud Migrate assesses and converts supported workloads from AWS, Google Cloud, Heroku, Kubernetes, or Spring environments to Azure Functions, App Service, or Container Apps.
- Main limitation
- Only documented source-to-target scenarios have prescribed conversion workflows; unmatched migrations need fresh research.
- First risk
- Behavior, data, and service-discovery regressions · High
- Source
- Pinned · ea76537e
Open full profile ↗2288
azure-hosted-copilot-sdk
Azure Hosted Copilot SDK is Microsoft's workflow guidance for building and hosting Copilot SDK applications on Azure.
- Main limitation
- It is specific to the Hosted Copilot SDK workflow and is not a general guide to every Azure AI or agent framework.
- First risk
- Identity, data, and cloud-cost exposure · High
- Source
- Pinned · ea76537e
Open full profile ↗2388
git-workflows
Advanced Git workflows, recovery and repository hygiene.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Editorial source
Open full profile ↗2487
github-cli
A structured guide to repositories, pull requests, issues and Actions.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Editorial source
Open full profile ↗2586
docker-sandbox
Isolated execution patterns for testing agent-generated code.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Editorial source
Open full profile ↗