技能低风险未认领

Azure Validate

Pre-deployment validation for Azure readiness. Run deep checks on configuration, infrastructure (Bicep or Terraform), RBAC role assignments, managed identity permissions, and prerequisites before deploying. WHEN: validate my app, check deployment readiness, run preflight checks, verify configuration, check if ready to deploy, validate azure.yaml, validate Bicep, test before deploying, troubleshoot deployment errors, validate Azure Functions, validate function app, validate serverless deployment, verify RBAC roles, check role assignments, review managed identity permissions, what-if analysis, validate Container Apps deployment.

microsoftmicrosoft/azure-validate★ 3.1k更新于 2026年10月6日

说明

AUTHORITATIVE GUIDANCE — Follow these instructions exactly unless they contradict security policies given to you.

⛔ STOP — PREREQUISITE CHECK REQUIRED

Before proceeding, verify this prerequisite is met:

azure-prepare was invoked and completed → .azure/deployment-plan.md exists with status Approved or later

If the plan is missing, STOP IMMEDIATELY and invoke azure-prepare first.

The complete workflow ensures success:

azure-prepare → azure-validate → azure-deploy

Triggers

  • Check if app is ready to deploy
  • Validate azure.yaml or Bicep
  • Run preflight checks
  • Troubleshoot deployment errors

Rules

  1. Run after azure-prepare, before azure-deploy
  2. All checks must pass—do not deploy with failures
  3. ⛔ Destructive actions require ask_user — global-rules

Steps

Run the workflow script and follow its instructions. It walks you through each validation step one at a time, recording progress in .azure/validate-status.json. Use references/scripts/workflow.ps1 on Windows or references/scripts/workflow.sh on macOS/Linux.

Start by calling the script without the completed-step argument:

pwsh references/scripts/workflow.ps1 -WorkspacePath <workspace-path>
# macOS/Linux: bash references/scripts/workflow.sh --workspace-path <workspace-path>

Each run prints the next action and the value to pass next. Perform the action, then re-run with that value (-CompletedStep <value> for pwsh, --completed-step <value> for bash). Repeat until it reports the azure-validate workflow is complete.

The steps reference recipe details in references/recipes/README.md and role checks in references/role-verification.md.

⛔ VALIDATION AUTHORITY

This skill is the officially verified way to set plan status to Validated. You MUST follow the script's instructions to completion before setting status to Validated. Do NOT set status to Validated without doing so.


⚠️ NEXT STEP — DEPENDS ON USER INTENT

After ALL validations pass, check whether the user asked to deploy:

  • If the user explicitly requested deployment, you MUST invoke azure-deploy to execute it. Do NOT run azd up, azd deploy, or any deployment commands directly — let azure-deploy handle execution.
  • If the user only asked to validate or prepare (not deploy), STOP after recording proof and setting status to Validated. Report the validation results and do NOT invoke azure-deploy.

If any validation failed, fix the issues and re-run azure-validate before proceeding.

权限

声明检测
运行代码—powershellshell
安装—npm
安装时运行脚本—无
网络—azure.microsoft.comdeveloper.hashicorp.comlearn.microsoft.com
需要的凭据—无
工作区外的路径—无
智能体工具—无

检查

低风险 · 没有发现需要提醒的地方。

未经人工审核 · 已做规则检查;模型审核尚未开启。

另有 3 处低风险标记:常见命令之类,只记录、不提醒
  • 规则 · command_injectionreferences/global-rules.md:11
  • 规则 · command_injectionreferences/recipes/terraform/scripts/validate-terraform.ps1:105
  • 规则 · command_injectionreferences/recipes/terraform/scripts/validate-terraform.sh:102

文件27 个文件 · 90.1 KB

  • SKILL.md3.5 KB
references/5
  • aspire-functions-secrets.md3.7 KB
  • global-rules.md1.2 KB
  • policy-validation.md1.5 KB
  • region-availability.md3.0 KB
  • role-verification.md3.9 KB
references/recipes/1
  • README.md374 B
references/recipes/azcli/2
  • README.md2.7 KB
  • errors.md505 B
references/recipes/azd/4
  • README.md5.3 KB
  • aspire.md1.7 KB
  • environment.md1.9 KB
  • errors.md2.6 KB
references/recipes/azd/scripts/2
  • set-aspire-aca-env.ps13.5 KB
  • set-aspire-aca-env.shx3.6 KB
references/recipes/bicep/2
  • README.md2.5 KB
  • errors.md374 B
references/recipes/scripts/2
  • validate-deployment.ps15.2 KB
  • validate-deployment.shx6.0 KB
references/recipes/terraform/2
  • README.md3.9 KB
  • errors.md2.8 KB
references/recipes/terraform/scripts/2
  • validate-terraform.ps16.8 KB
  • validate-terraform.shx6.6 KB
references/scripts/4
  • scan-aspire-functions-secrets.ps13.0 KB
  • scan-aspire-functions-secrets.shx3.3 KB
  • workflow.ps15.2 KB
  • workflow.shx5.7 KB

版本

  1. #11.2.3最新2026年10月7日