0193
commit-message-storyteller
Narrative Conventional Commit messages that explain intent, impact, and logical change boundaries.
- Main limitation
- A diff often cannot reveal the true motivation, user impact, or issue context.
- First risk
- Incorrect intent inferred from code · Medium
- Source
- Pinned · 1f564408
Open full profile ↗0292
supply-chain-risk-auditor
Measured dependency risk reports covering advisories, maintainers, abandonment, and install scripts.
- Main limitation
- Does not fully parse yarn.lock, pnpm-lock.yaml, poetry.lock, or unsupported ecosystems.
- First risk
- Registry and repository metadata exposure · High
- Source
- Pinned · 32e34f81
Open full profile ↗0391
mcp-deploy-manage-agents
Deploy and manage MCP-connected agents.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗0491
containerize-aspnet-framework
Create Windows container files for ASP.NET Framework projects.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗0591
create-github-issues-feature-from-implementation-plan
Split implementation-plan phases into trackable GitHub issues.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗0691
create-github-issues-for-unmet-specification-requirements
Open issues for specification requirements not yet implemented.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗0791
editorconfig
Generate an EditorConfig tailored to the repository.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗0890
pr-screenshots
Matched before-and-after visual evidence for pull requests, including upload and sizing guidance.
- Main limitation
- GitHub has no clean public API for PR-description image upload in this workflow.
- First risk
- Sensitive data in shared screenshots · High
- Source
- Pinned · 1f564408
Open full profile ↗0990
aws-cost-optimize
Review AWS infrastructure and turn cost findings into issues.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗1090
aws-resource-health-diagnose
Diagnose AWS resource health from logs and metrics.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗1190
aws-well-architected-review
Review workload architecture against AWS Well-Architected guidance.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗1290
az-cost-optimize
Find Azure resource cost optimizations and create tracked actions.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗1390
centos-linux-triage
Triage CentOS failures with SELinux-aware operational checks.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗1490
containerize-aspnetcore
Create production-minded containers for ASP.NET Core projects.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗1590
conventional-branch
Create and validate branch names against a conventional scheme.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗1690
conventional-commit
Write commits that follow Conventional Commits semantics.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗1790
create-github-action-workflow-specification
Document an existing GitHub Actions workflow as a maintainable specification.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗1890
create-github-issue-feature-from-specification
Turn a feature specification into a structured GitHub issue.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗1990
debian-linux-triage
Triage Debian failures with apt, systemd, and AppArmor context.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Pinned · 1f564408
Open full profile ↗2089
microsoft-foundry
Microsoft Foundry is the official Azure workflow router for creating, deploying, invoking, evaluating, observing, optimizing, and fine-tuning AI agents and models.
- Main limitation
- The mandatory setup and specialized subskills must be available and read before the requested workflow begins.
- First risk
- Costly or production-impacting cloud changes · High
- Source
- Pinned · ea76537e
Open full profile ↗2189
azure-diagnostics
Azure Diagnostics is Microsoft's systematic production-triage workflow for moving from symptoms to resource health, logs, metrics, recent changes, and service-specific next steps.
- Main limitation
- Useful diagnosis requires accurate Azure resource context, time windows, telemetry retention, and sufficient read permissions.
- First risk
- Production remediation without sufficient evidence · High
- Source
- Pinned · ea76537e
Open full profile ↗2289
azure-prepare
Azure Prepare plans and generates azd-based Azure deployment assets, including azure.yaml, Bicep or Terraform infrastructure, and Dockerfiles.
- Main limitation
- It is specifically for azd workflows or projects that already contain azure.yaml, not every Azure deployment method.
- First risk
- Incorrect generated infrastructure · High
- Source
- Pinned · ea76537e
Open full profile ↗2389
azure-ai
Azure AI is Microsoft's compact service guide for Azure AI Search, Speech, Azure OpenAI, and Document Intelligence.
- Main limitation
- It is a broad routing and reference Skill, not an end-to-end provisioning or production deployment workflow.
- First risk
- Sensitive content and billable AI operations · High
- Source
- Pinned · ea76537e
Open full profile ↗2489
azure-deploy
Azure Deploy executes production deployment for an application that has already completed Azure Prepare and Azure Validate.
- Main limitation
- It cannot prepare a new application or generate missing infrastructure; Azure Prepare owns that work.
- First risk
- Production and infrastructure changes · High
- Source
- Pinned · ea76537e
Open full profile ↗2589
azure-validate
Azure Validate is the mandatory pre-deployment gate between Azure Prepare and Azure Deploy.
- Main limitation
- It requires an Azure Prepare plan already approved or later; it is not a standalone first step.
- First risk
- False readiness from skipped evidence · High
- Source
- Pinned · ea76537e
Open full profile ↗2689
azure-storage
Azure Storage is Microsoft's guide to Blob Storage, File Shares, Queue Storage, Table Storage, and Data Lake, including hot, cool, cold, and archive tiers plus lifecycle management.
- Main limitation
- It does not cover SQL databases, Cosmos DB design, Event Hubs, or Service Bus workflows.
- First risk
- Data exposure, overwrite, or lifecycle loss · High
- Source
- Pinned · ea76537e
Open full profile ↗2789
entra-app-registration
Entra App Registration guides Microsoft Entra ID application registration, OAuth 2.0 configuration, API permissions, service principals, and MSAL integration.
- Main limitation
- It focuses on app identity and OAuth, not general Azure resource security or Key Vault secret auditing.
- First risk
- Over-privileged app or leaked credential · High
- Source
- Pinned · ea76537e
Open full profile ↗2889
azure-compliance
Azure Compliance runs configuration and security assessments through Azure Quick Review, Key Vault expiration inspection, and targeted Resource Graph queries.
- Main limitation
- It assesses configuration and best practices; it is not a legal opinion, formal certification, or guarantee of regulatory compliance.
- First risk
- Sensitive audit output or false assurance · High
- Source
- Pinned · ea76537e
Open full profile ↗2989
appinsights-instrumentation
AppInsights Instrumentation is a reference Skill for adding Azure Application Insights telemetry patterns and SDK configuration to supported web applications.
- Main limitation
- It is guidance only; requests to add or change components must route to Azure Prepare.
- First risk
- Sensitive or excessive telemetry · High
- Source
- Pinned · ea76537e
Open full profile ↗3089
azure-resource-lookup
Azure Resource Lookup is a read-oriented inventory and discovery workflow for listing and finding Azure resources across subscriptions or resource groups.
- Main limitation
- It does not deploy, modify, or delete resources, and orphan detection is not authorization to remove anything.
- First risk
- Broad infrastructure disclosure · Medium
- Source
- Pinned · ea76537e
Open full profile ↗3189
azure-resource-visualizer
Azure Resource Visualizer inventories a selected resource group, inspects configuration and dependencies, and creates a Markdown architecture document with a detailed Mermaid diagram.
- Main limitation
- Some relationships are inferred from configuration and naming; the diagram is documentation, not runtime traffic proof.
- First risk
- Infrastructure topology disclosure · High
- Source
- Pinned · ea76537e
Open full profile ↗3288
azure-aigateway
Azure AI Gateway configures Azure API Management as a governance layer for AI models, MCP tools, and agents.
- Main limitation
- It requires Azure CLI for configuration and testing, and does not provision the APIM instance itself.
- First risk
- Misconfigured gateway policy or exposed key · High
- Source
- Pinned · ea76537e
Open full profile ↗3388
azure-kusto
Azure Kusto queries and analyzes Azure Data Explorer data with KQL for logs, telemetry, time series, IoT, security, and performance investigations.
- Main limitation
- Useful results depend on knowing the correct cluster, database, schema, time range, and field semantics.
- First risk
- Sensitive data exposure or expensive query · High
- Source
- Pinned · ea76537e
Open full profile ↗3488
azure-messaging
Azure Messaging is a troubleshooting guide for Azure Event Hubs and Service Bus SDKs.
- Main limitation
- It covers SDK troubleshooting for Event Hubs and Service Bus, not Event Grid or general queue architecture design.
- First risk
- Message loss, duplication, or secret leakage · High
- Source
- Pinned · ea76537e
Open full profile ↗3588
azure-compute
Azure Compute is the workflow router for bare Azure Virtual Machine and Virtual Machine Scale Set decisions.
- Main limitation
- It is for bare VM or VMSS infrastructure, not Docker services, web apps, APIs, or serverless application deployment.
- First risk
- Costly, insecure, or unavailable compute · High
- Source
- Pinned · ea76537e
Open full profile ↗3688
azure-cloud-migrate
Azure Cloud Migrate assesses and converts supported workloads from AWS, Google Cloud, Heroku, Kubernetes, or Spring environments to Azure Functions, App Service, or Container Apps.
- Main limitation
- Only documented source-to-target scenarios have prescribed conversion workflows; unmatched migrations need fresh research.
- First risk
- Behavior, data, and service-discovery regressions · High
- Source
- Pinned · ea76537e
Open full profile ↗3788
azure-quotas
Azure Quotas helps inspect and manage subscription capacity across Azure providers.
- Main limitation
- Quota names do not map one-to-one to ARM resource types; the Skill requires discovery instead of guessing names.
- First risk
- Subscription-level quota changes · High
- Source
- Pinned · ea76537e
Open full profile ↗3888
azure-upgrade
Azure Upgrade assesses and upgrades supported Azure workloads between plans, tiers, or SKUs, and can modernize specified legacy Azure Java SDK dependencies.
- Main limitation
- Only documented scenarios are prescriptive; this Skill is not for cross-cloud migration or every Azure service upgrade.
- First risk
- Production migration and service disruption · High
- Source
- Pinned · ea76537e
Open full profile ↗3988
git-workflows
Advanced Git workflows, recovery and repository hygiene.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Editorial source
Open full profile ↗4087
azure-rbac
Azure RBAC helps map requested Azure resource permissions to a suitable built-in role, proposes a custom role only when no built-in role fits, and prepares Azure CLI commands and Bicep examples for role assignments.
- Main limitation
- The published instructions describe role recommendations and command or Bicep generation; they do not establish live tenant state or automatically apply a grant.
- First risk
- Privilege escalation or access outage · High
- Source
- Pinned · ea76537e
Open full profile ↗4187
github-cli
A structured guide to repositories, pull requests, issues and Actions.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Editorial source
Open full profile ↗4286
docker-sandbox
Isolated execution patterns for testing agent-generated code.
- Main limitation
- Detailed package files are not fully catalogued.
- First risk
- Review before install · Medium
- Source
- Editorial source
Open full profile ↗