Drawio Azure
sparklabx/drawio-ai-kit
A skill your agent uses when the user asks for an Azure architecture diagram — VNet/networking, App Service, AKS, landing zone, multi-region, or any diagram built with Azure service icons.
Expert guidance for developing and contributing to Azure Quick Review (azqr) - A Go-based CLI tool for Azure resource compliance analysis
$ npx skills add Azure/azqr --skill azqr-developer -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install Azure/azqr azqr-developer --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/Azure/azqr.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/azqr-developer .claude/skills/azqr-developer && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "azqr-developer" agent skill from https://github.com/Azure/azqr/tree/main/.agents/skills/azqr-developer into .claude/skills/azqr-developer/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "azqr-developer", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/Azure/azqr/tree/main/.agents/skills/azqr-developerType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add Azure/azqr --skill azqr-developer -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install Azure/azqr azqr-developer --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Azure/azqr.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.agents/skills/azqr-developer .agents/skills/azqr-developer && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "azqr-developer" agent skill from https://github.com/Azure/azqr/tree/main/.agents/skills/azqr-developer into .agents/skills/azqr-developer/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "azqr-developer", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Azure/azqr --skill azqr-developer -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install Azure/azqr azqr-developer --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Azure/azqr.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.agents/skills/azqr-developer .cursor/skills/azqr-developer && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "azqr-developer" agent skill from https://github.com/Azure/azqr/tree/main/.agents/skills/azqr-developer into .cursor/skills/azqr-developer/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "azqr-developer", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/Azure/azqr.git --path .agents/skills/azqr-developer--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add Azure/azqr --skill azqr-developer -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install Azure/azqr azqr-developer --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Azure/azqr.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.agents/skills/azqr-developer .gemini/skills/azqr-developer && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "azqr-developer" agent skill from https://github.com/Azure/azqr/tree/main/.agents/skills/azqr-developer into .gemini/skills/azqr-developer/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "azqr-developer", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install Azure/azqr azqr-developerInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add Azure/azqr --skill azqr-developer -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/Azure/azqr.git skills-src && mkdir -p .github/skills && cp -r skills-src/.agents/skills/azqr-developer .github/skills/azqr-developer && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "azqr-developer" agent skill from https://github.com/Azure/azqr/tree/main/.agents/skills/azqr-developer into .github/skills/azqr-developer/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "azqr-developer", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Azure/azqr --skill azqr-developer -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install Azure/azqr azqr-developer --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Azure/azqr.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.agents/skills/azqr-developer .opencode/skills/azqr-developer && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "azqr-developer" agent skill from https://github.com/Azure/azqr/tree/main/.agents/skills/azqr-developer into .opencode/skills/azqr-developer/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "azqr-developer", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
azqr-developerExpert guidance for developing and contributing to Azure Quick Review (azqr) - A Go-based CLI tool for Azure resource compliance analysis
Azqr Developer is an agent skill from Azure/azqr, published by the product's own GitHub organization. Expert guidance for developing and contributing to Azure Quick Review (azqr) - A Go-based CLI tool for Azure resource compliance analysis
Its SKILL.md is about 3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files (for example `knowledge/go-idioms.md`).
It sits in Development. It works with Microsoft Azure. The licence is MIT.
3 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 3cf9f0a. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
makeazFrom the folder's file list and the shell code blocks in SKILL.md.
Links to these hosts (documentation or services it may open):
github.comgo.devaka.msazure.github.ioFrom URLs in SKILL.md, links to its own repository left out.
Names these keys or tokens, usually read from environment variables:
AZURE_CLIENT_SECRETAZURE_TOKEN_CREDENTIALSFrom names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Azqr Developer loads about 3k tokens when it runs. Until then it costs about 38 tokens; SKILL.md has 971 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from Azure/azqr at commit 3cf9f0a, republished under its MIT licence (© Azure). 971 words, ~3,043 tokens.
.claude/skills/azqr-developer/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.Expert guidance for autonomous agents and developers contributing to the Azure Quick Review (azqr) project.
Azure Quick Review (azqr) is a CLI tool written in Go that analyzes Azure resources for compliance with Azure's best practices and recommendations. The tool scans Azure resources using:
# Build the project
make build
# Run all tests (REQUIRED before submitting pull requests)
make test
# Clean build artifacts
make clean
# View all available targets
make helpazqr/
├── cmd/azqr/ # Main CLI application entry point
│ ├── main.go # Application entry point
│ └── commands/ # CLI command implementations (one file per Azure service)
├── cmd/server/ # Server mode implementation
├── internal/ # Internal packages
│ ├── scanner.go # Main scanning logic
│ ├── models/ # Data models and filters
│ ├── renderers/ # Output formatters (Excel, CSV, JSON)
│ ├── scanners/ # Service-specific scanners (one per Azure service)
│ ├── graph/ # Azure Resource Graph queries
│ └── aigov/ # AI Governance utilities
├── data/ # Static data files
│ └── recommendations.json # Generated recommendations data
├── examples/ # Example configurations and CI/CD pipelines
├── docs/ # Documentation website (Hugo-based)
└── Makefile # Build automationScanner, Renderer)All code must support multiple authentication methods:
fmt.Errorf with %w verberrWhen adding a new Azure service, follow this systematic approach:
Create scanner in internal/scanners/<service>/
Add command in cmd/azqr/commands/<service>.go
Update models in internal/models/
Add comprehensive tests
Update documentation
CRITICAL: Always run make test before submitting pull requests. This is non-negotiable.
The test command includes:
golangci-lint) - Code quality checks# Run the full test suite (ALWAYS run before PR)
make test
# Individual test components
make lint # Run linter
make vet # Run go vet
make tidy # Check module tidiness# Build for current platform
make build
# Build for specific OS/architecture
GOOS=linux GOARCH=amd64 make build
GOOS=windows GOARCH=amd64 make build
# Build Docker image
make build-image
# Build with version information
PRODUCT_VERSION=1.0.0 make build
# Update recommendations.json after adding rules
make jsoninternal/scanners/<service>/make json to update recommendations.jsonmake testmake testinternal/throttling/ for rate limiting// internal/scanners/<service>/<service>.go
package <service>
import (
"context"
"github.com/Azure/azqr/internal/models"
)
// Scanner implements the service scanner interface
type Scanner struct {
// Scanner fields (config, client, etc.)
}
// Scan performs the compliance scan for the service
func (s *Scanner) Scan(ctx context.Context) ([]models.Recommendation, error) {
// Implementation
// 1. Fetch resources
// 2. Apply recommendation rules
// 3. Return findings
}// cmd/azqr/commands/<service>.go
package commands
import (
"github.com/spf13/cobra"
)
func init() {
// Register command with root command
}
var <service>Cmd = &cobra.Command{
Use: "<service>",
Short: "Scan <Service Name>",
Long: "Detailed description of what this scanner does",
Run: <service>Run,
}
func <service>Run(cmd *cobra.Command, args []string) {
// Command implementation
// 1. Parse flags
// 2. Initialize scanner
// 3. Run scan
// 4. Output results
}func TestScanner_Scan(t *testing.T) {
tests := []struct {
name string
setup func() // setup test environment
want int // expected number of recommendations
wantErr bool
}{
{
name: "success case",
setup: func() { /* setup */ },
want: 5,
wantErr: false,
},
{
name: "error case",
setup: func() { /* setup */ },
want: 0,
wantErr: true,
},
}
for _, tt := range tests {
t.Run(tt.name, func(t *testing.T) {
tt.setup()
// test implementation
})
}
}# Set environment variable for detailed logging
export AZURE_SDK_GO_LOGGING=all
# Run with debug flag
./azqr scan --debugAuthentication Failures
Reader on Subscription/Management Group)az account show if using Azure CLI authRate Limiting
Memory Usage
pprofNetwork Connectivity
# Service Principal
AZURE_CLIENT_ID="<service-principal-id>"
AZURE_CLIENT_SECRET="<service-principal-secret>"
AZURE_TENANT_ID="<tenant-id>"
# Credential Chain Configuration
AZURE_TOKEN_CREDENTIALS="dev" # Use Azure CLI/Azure Developer CLI
AZURE_TOKEN_CREDENTIALS="prod" # Use env vars/workload identity/managed identityAZURE_SDK_GO_LOGGING="all" # Enable detailed SDK loggingmake test and ensure all tests pass (100% required)The project currently supports 50+ Azure services including:
When adding new services:
azqr generates reports in multiple formats:
--csv flag)make test before submitting a pull request - This is the most important rulemake json after adding rules© Azure, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 1 other file in .agents/skills/azqr-developer of Azure/azqr.
Open the folder on GitHubat commit 3cf9f0a
Azqr Developer next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Azqr Developer this skillAzure/azqr | 794 | — | ~3k | Automated safety check: Pass | MIT | |
| Drawio Azuresparklabx/drawio-ai-kit | 652 | — | ~1.6k | Automated safety check: Pass | MIT | |
| Azsdk Common Generate SDK LocallyAzure/azure-sdk-for-android | 121 | — | ~1.5k | Automated safety check: Pass | MIT | |
| Kouchou AI Developmentdigitaldemocracy2030/kouchou-ai | 171 | — | ~540 | Automated safety check: Notes | AGPL-3.0 | |
| New Resourcemondoohq/mql | 411 | — | ~5.6k | Automated safety check: Pass | Custom licence | |
| Azv Azure To DiagramAzure/AZVerify | 101 | — | ~5.7k | Automated safety check: Pass | MIT |
sparklabx/drawio-ai-kit
A skill your agent uses when the user asks for an Azure architecture diagram — VNet/networking, App Service, AKS, landing zone, multi-region, or any diagram built with Azure service icons.
Azure/azure-sdk-for-android
Generate, build, and test Azure SDKs locally from TypeSpec with automatic customization.
digitaldemocracy2030/kouchou-ai
Local development setup, build and lint commands, environment configuration, and deployment helpers for the kouchou-ai repo.
mondoohq/mql
Add or change a resource in an existing mql provider — schema, codegen, implementation, tests, and verification against a real target.
Azure/AZVerify
Reverse-engineer a live Azure scope (resource group or filtered subscription) into a professional Draw.io architecture diagram following established AzVerify conventions.
thomast1906/github-copilot-agent-skills
Creates and edits architecture diagrams through the Draw.io MCP tool, with guidance for rendering Azure icons correctly and laying out network diagrams.
Azure/azqr
Create new skills, modify and improve existing skills, and measure skill performance.
Azure/azqr
Validate KQL (Kusto Query Language) files used in Azure Quick Review (azqr) against their recommendation definitions.
Azure/azqr
In-depth code review that fans out parallel subagents across review areas — CRITICAL after non-trivial development.
Azure/azqr
Analyzes recently modified code and creates pull requests with simplifications that improve clarity, consistency, and maintainability while preserving functionality
Works with
Categories
Expert guidance for developing and contributing to Azure Quick Review (azqr) - A Go-based CLI tool for Azure resource compliance analysis. Azqr Developer is an agent skill from Azure/azqr, published by the product's own GitHub organization.
Azqr Developer fits situations like: development work in your project.
Run `npx skills add Azure/azqr --skill azqr-developer -a claude-code`. Or copy the skill folder (.agents/skills/azqr-developer in Azure/azqr) into .claude/skills/azqr-developer in your project. Claude Code loads it when a task matches its description.
Run `npx skills add Azure/azqr --skill azqr-developer -a codex`. Or copy the skill folder (.agents/skills/azqr-developer in Azure/azqr) into .agents/skills/azqr-developer in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Azure/azqr --skill azqr-developer -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/azqr-developer, .gemini/skills/azqr-developer, .github/skills/azqr-developer and .opencode/skills/azqr-developer in your project.
Going by SKILL.md and its folder, Azqr Developer needs the command-line tools its instructions call (make and az) and credentials named AZURE_CLIENT_SECRET and AZURE_TOKEN_CREDENTIALS. Our summary lists: Docker; A credential in AZURE_CLIENT_SECRET.
SKILL.md names 4 domains. As links in the text: github.com, go.dev, aka.ms and azure.github.io. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Azqr Developer is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 3k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Azqr Developer: Drawio Azure (sparklabx/drawio-ai-kit, 652 stars), Azsdk Common Generate SDK Locally (Azure/azure-sdk-for-android, 121 stars), Kouchou AI Development (digitaldemocracy2030/kouchou-ai, 171 stars) and New Resource (mondoohq/mql, 411 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
Azure (a GitHub organization, an official publisher) maintains it in Azure/azqr, which has 794 GitHub stars. The repository holds 5 skills in this directory. The repository was last updated on October 5, 2026.
Source: Azure/azqr on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.