azure-compute
Plan, Deploy, and Troubleshoot Azure Compute
Azure compute decisions and deployment workflows can be complex and risky. This skill guides VM selection, validation, provisioning, capacity reservations, management enrollment, and connectivity troubleshooting.
Stop for confirmation before installing.
Review the plan and obtain explicit user consent before changing files.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "azure-compute" from https://skillstore.io/skills/microsoft-azure-compute.md and its manifest at https://skillstore.io/api/skills/microsoft-azure-compute/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "azure-compute". Recommend a low-cost Linux VM for development in eastus.
Expected outcome:
- Primary option: a general-purpose burstable size for intermittent development workloads.
- Alternative: a D-series size for sustained CPU and memory use.
- Includes retail cost, quota status, availability notes, and selection tradeoffs.
Using "azure-compute". Create a secure Ubuntu VM with Bicep.
Expected outcome:
A reviewed deployment plan followed by Bicep and usage guidance. The plan records region, SKU, image, quota, trusted SSH source, disk, identity, and estimated cost.
Using "azure-compute". My Azure VM rejects SSH connections.
Expected outcome:
An ordered diagnosis covering VM health, public addressing, NSG rules, routes, guest firewall, SSH service, and authentication. State-changing fixes are separated from read-only checks.
Security Audit
High RiskMost static alerts are documentation syntax, official Microsoft endpoints, private or sample addresses, and SSH public-key references. Fourteen static findings remain confirmed because they contact a third party or change remote firewall, authentication, privilege, networking, or SELinux state. Semantic review also found shell injection exposure, fail-open ingress, unsafe host-key guidance, broad unconfirmed EMM changes, and plaintext password handling.
Confirmed security concerns (16)
Show all 16 confirmed findings
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (41)
🌐 Network access (33)
📁 Filesystem access (50)
Detected Patterns
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/microsoft-azure-compute/audits/5?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/microsoft-azure-compute?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/microsoft-azure-compute?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/microsoft-azure-compute/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/microsoft-azure-compute.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA · BibTeX · CFF)
APA citation
microsoft. (2026). azure-compute security audit report (audit version 5) [Author version 0.0.0-placeholder]. Skillstore. https://skillstore.io/skills/microsoft-azure-compute/audits/5BibTeX citation
@techreport{microsoft-microsoft-azure-compute-2026,
author = {microsoft},
title = {azure-compute security audit report (audit version 5)},
institution = {Skillstore},
year = {2026},
number = {5},
url = {https://skillstore.io/skills/microsoft-azure-compute/audits/5},
note = {Author version 0.0.0-placeholder}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "azure-compute security audit report (audit version 5)"
version: "0.0.0-placeholder"
type: report
authors:
- name: "microsoft"
date-released: "2026-07-23"
url: "https://skillstore.io/skills/microsoft-azure-compute/audits/5"
identifiers:
- type: other
value: "skillstore:microsoft-azure-compute:audit:5"
description: "Skillstore immutable audit report identifier"
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Standardize VM deployment
Create a reviewed Azure CLI, Bicep, or Terraform artifact with validated region, image, SKU, quota, and network settings.
Compare capacity and cost
Evaluate VM families, VMSS options, retail prices, quota, and capacity reservations before selecting an architecture.
Restore VM connectivity
Diagnose RDP or SSH failures using ordered checks for VM state, networking, guest services, firewall rules, and credentials.
Try These Prompts
Recommend an Azure VM for a small Linux development server in eastus. Compare two sizes, estimate monthly cost, and explain your choice.
Create a Bicep plan for an Ubuntu VM in westeurope. Restrict SSH to my trusted CIDR and validate SKU, image, and quota first.
Troubleshoot an SSH timeout for my Azure VM. Start with read-only checks and request approval before changing networking, firewall, credentials, or SELinux.
Design a production VMSS for a stateless service. Compare orchestration, autoscale, zones, cost, quota, security, and capacity reservation options.
Best Practices
- Validate region, image, SKU, quota, and estimated cost before generating or applying infrastructure.
- Restrict SSH and RDP to explicit trusted CIDR ranges, or use private access and Azure Bastion.
- Review every state-changing command and confirm the target subscription, resource group, VM, and expected impact.
Avoid
- Do not use wildcard management-port sources when public IP detection fails.
- Do not place passwords, private keys, or other credentials in prompts or command-line arguments.
- Do not run firewall, account, networking, SELinux, or subscription changes without explicit approval.
Frequently Asked Questions
Can this skill deploy an application?
Which deployment formats are supported?
Does it verify Azure availability and quota?
Are cost estimates exact?
Can it change an existing VM?
What access is required for live operations?
Developer Details
Author
microsoftLicense
MIT
Author version
v0.0.0-placeholder
Skillstore revision
r2
Repository
https://github.com/microsoft/github-copilot-for-azure/tree/main/plugin/skills/azure-compute/Ref
ebdfe608f5de2b66ff37ab4af12af8ac4f5e8006
Maintenance freshness
7/25/2026
Usage
6 downloads · 257 views