azure-deploy

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONREMOTE_CODE_EXECUTION
Full Analysis
  • [External Downloads from Trusted Sources]: The skill includes instructions to download the Azure Developer CLI (azd) installation script from a trusted Microsoft domain (aka.ms). This is a standard and expected step for setting up the required deployment tooling.\n- [Command Execution for Deployment Tasks]: The skill contains workflows and scripts that execute Azure CLI and azd commands to provision infrastructure and deploy applications. These actions are aligned with the skill's primary purpose.\n- [Automated Tool Installation]: The provided scripts for database migrations and SQL access include steps to install official extensions and tools, such as dotnet-ef and the rdbms-connect Azure CLI extension, ensuring the environment has the necessary components.\n- [Operational Security Guidelines]: The skill incorporates safety protocols, such as requiring explicit user confirmation before performing destructive operations like resource deletion, and promoting the use of managed identities for production security.\n- [Data Ingestion Considerations]: The skill reads project configuration files and environment variables to parameterize deployments. This is a routine operation for infrastructure-as-code tools and is handled within the scope of the deployment environment.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 12:06 AM
Security Audit — agent-trust-hub — azure-deploy