agents-v2-py
Build Container-Based Azure AI Hosted Agents
Deploying custom agent containers in Azure AI Foundry requires precise SDK, identity, registry, and protocol configuration. This skill provides focused Python patterns for creating and managing hosted agents.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "agents-v2-py" from https://skillstore.io/skills/sickn33-agents-v2-py.md and its manifest at https://skillstore.io/api/skills/sickn33-agents-v2-py/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "agents-v2-py". Plan a hosted agent named invoice-reader using a fixed registry image and modest resources.
Expected outcome:
A deployment outline with prerequisite checks, authenticated client setup, a versioned image reference, response protocol configuration, one CPU, and two GiB memory.
Using "agents-v2-py". Explain why my hosted agent reports ImagePullBackOff.
Expected outcome:
- Confirm that the image path and fixed tag exist in the registry.
- Verify that the project managed identity has the AcrPull role.
- Check registry networking and retry after permission propagation.
Using "agents-v2-py". Design an asynchronous creation flow.
Expected outcome:
An async lifecycle plan that opens credential and project client contexts, creates one agent version, reports its state, and closes both clients.
Security Audit
Medium RiskAll 65 static findings are false positives caused by Markdown syntax, normal Python imports, example URLs, endpoint-only environment access, and troubleshooting text. Two contextual risks remain: copy-ready examples use mutable latest image tags, and an unguarded example deletes a cloud agent version. No prompt injection or malicious intent was found.
Confirmed security concerns (2)
Risk Factors
โก Contains scripts (3)
โ๏ธ External commands (48)
๐ Network access (6)
๐ Env variables (7)
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/sickn33-agents-v2-py/audits/5?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/sickn33-agents-v2-py?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/sickn33-agents-v2-py?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/sickn33-agents-v2-py/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/sickn33-agents-v2-py.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA ยท BibTeX ยท CFF)
APA citation
sickn33. (2026). agents-v2-py security audit report (audit version 5) [Author version unspecified]. Skillstore. https://skillstore.io/skills/sickn33-agents-v2-py/audits/5BibTeX citation
@techreport{sickn33-sickn33-agents-v2-py-2026,
author = {sickn33},
title = {agents-v2-py security audit report (audit version 5)},
institution = {Skillstore},
year = {2026},
number = {5},
url = {https://skillstore.io/skills/sickn33-agents-v2-py/audits/5},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "agents-v2-py security audit report (audit version 5)"
version: "unspecified"
type: report
authors:
- name: "sickn33"
date-released: "2026-07-23"
url: "https://skillstore.io/skills/sickn33-agents-v2-py/audits/5"
identifiers:
- type: other
value: "skillstore:sickn33-agents-v2-py:audit:5"
description: "Skillstore immutable audit report identifier"
Skillstore Score
Why this score Evidence Confidence: HighWhat You Can Build
Create a First Hosted Agent
Prepare a Python workflow that authenticates and deploys a custom container as an Azure AI hosted agent.
Standardize Deployment Configuration
Define consistent protocols, resources, tools, image references, and environment settings for hosted agent releases.
Diagnose Hosted Agent Failures
Review registry permissions, image paths, capability hosts, and protocol versions when agent creation fails.
Try These Prompts
Review my Azure AI project setup for a container-based hosted agent. Identify missing SDK, registry, identity, capability host, and endpoint requirements.
Create a Python hosted-agent workflow for image [image reference], agent [name], CPU [value], and memory [value]. Use DefaultAzureCredential and fixed image tags.
Extend my hosted-agent design with [tools], protocol [protocol], and these non-secret environment settings: [settings]. Explain required permissions and trust boundaries.
Audit this Azure hosted-agent deployment plan: [plan]. Check image immutability, least privilege, secret handling, MCP trust, resource sizing, cleanup controls, and async lifecycle management.
Best Practices
- Use immutable image digests or fixed version tags for repeatable deployments.
- Grant only required registry and project permissions through managed identities.
- Validate tool endpoints, protect secrets, and confirm destructive operations before execution.
Avoid
- Do not deploy production agents from mutable latest image tags.
- Do not place credentials or secrets directly in source code or container settings.
- Do not enable code execution, file access, or MCP tools without reviewing their trust boundaries.