Official agent skill

Sdaf Workspace And Tfvars

by Azure in Azure/sap-automation

Explain and validate the SDAF WORKSPACES layout (DEPLOYER / LIBRARY / LANDSCAPE / SYSTEM), the region-code naming convention, and how the four tfvars files hang off it.

OfficialMITAuto-check passedDevOps & Cloud

Install Sdaf Workspace And Tfvars

skills CLI
$ npx skills add Azure/sap-automation --skill sdaf-workspace-and-tfvars -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install Azure/sap-automation sdaf-workspace-and-tfvars --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/Azure/sap-automation.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/sdaf-workspace-and-tfvars .claude/skills/sdaf-workspace-and-tfvars && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
sdaf-workspace-and-tfvars
GitHub stars
146
Token cost
~1.2k tokens
SKILL.md length
404 words
Files
2 (incl. references)
Skills in repo
19
Repo updated
First seen
Licence
MIT

At a glance

Explain and validate the SDAF WORKSPACES layout (DEPLOYER / LIBRARY / LANDSCAPE / SYSTEM), the region-code naming convention, and how the four tfvars files hang off it.

  • A user says how do I lay out WORKSPACES
  • SKILL.md covers When to invoke, The four workspaces, Naming convention and Filename must match the…, plus 4 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Which tfvars go where

What it does

Sdaf Workspace And Tfvars is an agent skill from Azure/sap-automation, published by the product's own GitHub organization. Explain and validate the SDAF WORKSPACES layout (DEPLOYER / LIBRARY / LANDSCAPE / SYSTEM), the region-code naming convention, and how the four tfvars files hang off it. Grounded in docs/local/README.md § Configuration and state layout, docs/region-codes.md, and the samples repo sap-automation-samples/docs/01-00-terraform-samples.md. Use when a user says "how do I lay out WORKSPACES", "which tfvars go where", "SDAF naming convention", "how should I name my parameter files", "region code", "control-plane vs library…

Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files, including reference files (for example `references/naming-and-region-codes.md`).

It sits in DevOps & Cloud, covering Infrastructure as code and Technical documentation. It works with Terraform. The repository describes itself as: This is the repository supporting the SAP deployment automation framework on Azure. The licence is MIT.

When your agent uses it

  • A user says how do I lay out WORKSPACES
  • Which tfvars go where
  • SDAF naming convention
  • How should I name my parameter files

Example prompts

  • “how do I lay out WORKSPACES”
  • “which tfvars go where”
  • “SDAF naming convention”
  • “/sdaf-workspace-and-tfvars”

Requirements

  • Pre-approved tools (allowed-tools): shell

What it can do on your machine

Read from SKILL.md and the folder at commit 78835f0. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • shell

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Sdaf Workspace And Tfvars loads about 1.2k tokens when it runs, and up to ~1.7k if it reads all its reference files. Until then it costs about 170 tokens; SKILL.md has 404 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~170
When it runs · the whole SKILL.md, loaded when a task matches
~1.2k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~1.7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from Azure/sap-automation at commit 78835f0, republished under its MIT licence (© Azure). 404 words, ~1,164 tokens.

Download SKILL.mdSave it as .claude/skills/sdaf-workspace-and-tfvars/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
sdaf-workspace-and-tfvars
description
Explain and validate the SDAF `WORKSPACES` layout (DEPLOYER / LIBRARY / LANDSCAPE / SYSTEM), the region-code naming convention, and how the four tfvars files hang off it. Grounded in `docs/local/README.md § Configuration and state layout`, `docs/region-codes.md`, and the samples repo `sap-automation-samples/docs/01-00-terraform-samples.md`. Use when a user says "how do I lay out WORKSPACES", "which tfvars go where", "SDAF naming convention", "how should I name my parameter files", "region code", "control-plane vs library vs landscape vs system tfvars", or "location_short". Do NOT use to deploy anything or to select a BOM (see sdaf-bom-selection).
allowed-tools
shell
license
MIT

SDAF Workspaces and tfvars

Context-primer. Answers "where does each tfvars go, and what must the directory names look like?" — grounded in the shipped docs. Hands off to the matching deploy skill.

When to invoke

Trigger on: "WORKSPACES layout", "which tfvars", "region code", "SDAF naming convention", "location_short", "unkn fallback", "DEPLOYER/LIBRARY/LANDSCAPE/ SYSTEM".

Do NOT trigger on: deploying, running validate.sh (that's sdaf-readiness-check), selecting a BOM (sdaf-bom-selection).

The four workspaces

Docs (docs/local/README.md § Configuration and state layout) show a WORKSPACES/ tree outside the SDAF checkout with four leaves. Each leaf holds a same-named .tfvars file:

WORKSPACES/
├── DEPLOYER/<ENV>-<CODE>-<DEPLOYER>-INFRASTRUCTURE/<same>.tfvars
├── LIBRARY/<ENV>-<CODE>-SAP_LIBRARY/<same>.tfvars
├── LANDSCAPE/<ENV>-<CODE>-<VNET>-INFRASTRUCTURE/<same>.tfvars
└── SYSTEM/<ENV>-<CODE>-<VNET>-<SID>/<same>.tfvars

Sources: docs/local/README.md § Configuration and state layout; sample layout also documented in sap-automation-samples/docs/01-00-terraform-samples.md § Inputs.

Naming convention

docs/region-codes.md § Where the region code appears defines the tokens and the pattern:

  • <ENV> — DEV / QA / PRD / MGMT / LAB.
  • <CODE> — the uppercase region code from docs/region-codes.md § Supported regions; unmapped regions fall back to unkn per § Unmapped regions fall back to unkn.
  • <DEPLOYER> — deployer identifier (e.g. DEP00, DEP01).
  • <VNET> — network identifier (e.g. SAP01, SAP02).
  • <SID> — SAP SID (e.g. X00, HA2, WIN).

Documented examples:

  • MGMT-WEEU-DEP01-INFRASTRUCTURE
  • MGMT-WEEU-SAP_LIBRARY
  • DEV-WEEU-SAP01-INFRASTRUCTURE
  • DEV-WEEU-SAP01-X00

See references/naming-and-region-codes.md for the doc-cited example set plus the "region codes appear in six places" note.

Filename must match the containing directory

Every documented example uses the same name for the directory and the .tfvars file inside it. Deploy scripts require you to cd into the directory containing the tfvars and pass the basename only (docs/local/troubleshooting.md § A parameter file is not found). Mismatch between directory name / file name / declared environment/region/network/SID is one of the shipped stage-script validation gates.

Do not "fix" a mismatch by editing state — re-name to match, or fix the tfvars content.

Show full SKILL.md (140 more words)Show less

Relationship of the four workspaces

  • DEPLOYER + LIBRARY together form the control plane; the library stores remote Terraform state.
  • LANDSCAPE (workload zone) reads control-plane / deployer state.
  • SYSTEM reads deployer + landscape state.

The enforced deploy order (control plane → workload zone → SAP system) is stated in sdaf-orientation-and-surface § The spine (order is enforced), which is the canonical statement. Doc anchors: docs/local/README.md § Complete the journey; each stage doc's § What the automation does / § Outcome.

GitHub-Actions-generated SYSTEM tfvars

For the GitHub Actions surface, docs say 04-create-system-environment.yml generates and commits the SAP-system WORKSPACES (docs/documentation-source-map.md § Lifecycle capability sources). Do not hand-author the SYSTEM tfvars in that flow; treat the generation step as the source of truth.

Hand-off

  • To validate a prepared workspace: sdaf-readiness-check (drives validate.sh).
  • To deploy: sdaf-control-plane-bootstrap → sdaf-workload-zone → sdaf-sap-system.
  • To pick a BOM referenced from SYSTEM tfvars: sdaf-bom-selection.

See also

  • sdaf-readiness-check, sdaf-control-plane-bootstrap, sdaf-workload-zone, sdaf-sap-system, sdaf-bom-selection.
  • docs/local/README.md, docs/region-codes.md, sap-automation-samples/docs/01-00-terraform-samples.md.

© Azure, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file (references) in skills/sdaf-workspace-and-tfvars of Azure/sap-automation.

  • SKILL.md
  • references/naming-and-region-codes.md

Open the folder on GitHubat commit 78835f0

Compare with similar skills

Sdaf Workspace And Tfvars next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Sdaf Workspace And Tfvars compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Sdaf Workspace And Tfvars this skillAzure/sap-automation146—~1.2kAutomated safety check: PassMIT
Avm Tf DocumentationAzure/terraform-azurerm-avm-ptn-alz135—~1.1kAutomated safety check: PassMIT
New Entity Requirementselastic/terraform-provider-elasticstack210—~1.9kAutomated safety check: PassApache-2.0
Terraform and OpenTofu Guideagentscope-ai/QwenPaw36k6 repos~4.2kAutomated safety check: PassApache-2.0
Terraform Skillantonbabenko/terraform-skill2.4k1 repos~5.1kAutomated safety check: PassApache-2.0
Review Docshashicorp/terraform-provider-aws11k—~1.3kAutomated safety check: PassMPL-2.0

Similar skills

  • Avm Tf Documentation

    Azure/terraform-azurerm-avm-ptn-alz

    Official

    A skill your agent uses for AVM Terraform generated README content, header.md, footer.md, examples documentation, terraform-docs inputs, and Avm.Authoring documentation checks.

    135 GitHub stars~1.1k tokensUpdated 5 days ago
    DevOps & CloudAuto-check passed
  • New Entity Requirements

    elastic/terraform-provider-elasticstack

    Official

    Gathers initial requirements for a new Terraform resource or data source by examining API clients (go-elasticsearch, generated kbapi), Elastic API docs (Elastic docs MCP server and/or web), then…

    210 GitHub stars~1.9k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Terraform and OpenTofu Guide

    agentscope-ai/QwenPaw

    Guidance for writing and testing Terraform and OpenTofu code: module structure, naming, test approaches, CI/CD workflows, state handling and security scanning.

    36k GitHub starsUsed in 6 repos~4.2k tokens
    DevOps & CloudAuto-check passed
  • Terraform Skill

    antonbabenko/terraform-skill

    A skill your agent uses when writing, reviewing, or debugging Terraform/OpenTofu modules, tests, CI, scans, or state ops - diagnoses failure mode (identity churn, secrets, blast radius, CI drift…

    2.4k GitHub starsUsed in 1 repo~5.1k tokens
    DevOps & CloudAuto-check passed
  • Review Docs

    hashicorp/terraform-provider-aws

    Official

    Review a Terraform AWS Provider PR's end-user documentation (website/docs//.markdown): whether docs are needed, description openings, argument/attribute style, section structure, tags wording, code…

    11k GitHub stars~1.3k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Senior DevOps Toolkit

    maslennikov-ig/claude-code-orchestrator-kit

    Comprehensive DevOps skill for CI/CD, infrastructure automation, containerization, and cloud platforms (AWS, GCP, Azure). Includes pipeline setup…

    260 GitHub starsUsed in 6 repos~1.1k tokens
    DevOps & CloudAuto-check: notes

More from Azure/sap-automation

All 19 skills in this repo
  • Sdaf Bom Selection

    Azure/sap-automation

    Official

    Pick the right SDAF BOM for a target SAP product / release / DB platform / version / kernel / topology.

    146 GitHub stars~1.6k tokensUpdated 3 days ago
    Auto-check passed
  • Sdaf Orientation And Surface

    Azure/sap-automation

    Official

    Orient a newcomer to the SAP Deployment Automation Framework (SDAF): explain the spine (control plane → workload zone → SAP system → software → install → operate/remove), summarise the three…

    146 GitHub stars~1.6k tokensUpdated 3 days ago
    Auto-check passed
  • Sdaf Quality Assurance

    Azure/sap-automation

    Official

    Validate a deployed SDAF SAP system through the SDAF-owned QA entry points: the local quality-assurance menu and the documented Azure DevOps pipeline 13 path.

    146 GitHub stars~1.6k tokensUpdated 3 days ago
    Auto-check passed
  • Sdaf Sap Installation

    Azure/sap-automation

    Official

    Guide SDAF operating-system, database, and SAP installation after the SAP-system workspace and reviewed media are ready.

    146 GitHub stars~1.5k tokensUpdated 3 days ago
    Auto-check passed
  • Sdaf Sovereign Cloud

    Azure/sap-automation

    Official

    Explain the current SDAF sovereign-cloud deltas without inventing a generic "all sovereigns" runbook.

    146 GitHub stars~1.4k tokensUpdated 3 days ago
    Auto-check passed
  • Sdaf State Management

    Azure/sap-automation

    Official

    Inspect and repair SDAF Terraform state safely before any reviewed import/remove.

    146 GitHub stars~1.7k tokensUpdated 3 days ago
    Auto-check passed

Works with

Categories

Questions about Sdaf Workspace And Tfvars

What does Sdaf Workspace And Tfvars do?

Explain and validate the SDAF WORKSPACES layout (DEPLOYER / LIBRARY / LANDSCAPE / SYSTEM), the region-code naming convention, and how the four tfvars files hang off it. Sdaf Workspace And Tfvars is an agent skill from Azure/sap-automation, published by the product's own GitHub organization. Explain and validate the SDAF WORKSPACES layout (DEPLOYER / LIBRARY / LANDSCAPE / SYSTEM), the region-code naming convention, and how the four tfvars files hang off it.

When should I use Sdaf Workspace And Tfvars?

Sdaf Workspace And Tfvars fits situations like: A user says how do I lay out WORKSPACES; which tfvars go where; SDAF naming convention; how should I name my parameter files.

How do I install Sdaf Workspace And Tfvars in Claude Code?

Run `npx skills add Azure/sap-automation --skill sdaf-workspace-and-tfvars -a claude-code`. Or copy the skill folder (skills/sdaf-workspace-and-tfvars in Azure/sap-automation) into .claude/skills/sdaf-workspace-and-tfvars in your project. Claude Code loads it when a task matches its description.

How do I install Sdaf Workspace And Tfvars in Codex?

Run `npx skills add Azure/sap-automation --skill sdaf-workspace-and-tfvars -a codex`. Or copy the skill folder (skills/sdaf-workspace-and-tfvars in Azure/sap-automation) into .agents/skills/sdaf-workspace-and-tfvars in your project. Codex loads it when a task matches its description.

Can I use Sdaf Workspace And Tfvars in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Azure/sap-automation --skill sdaf-workspace-and-tfvars -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/sdaf-workspace-and-tfvars, .gemini/skills/sdaf-workspace-and-tfvars, .github/skills/sdaf-workspace-and-tfvars and .opencode/skills/sdaf-workspace-and-tfvars in your project.

What does Sdaf Workspace And Tfvars need to run?

SKILL.md names no scripts, command-line tools or credentials: Sdaf Workspace And Tfvars is instructions for the agent only. Its frontmatter pre-approves these tools: shell.

Does Sdaf Workspace And Tfvars access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Sdaf Workspace And Tfvars safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Sdaf Workspace And Tfvars use?

Sdaf Workspace And Tfvars is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Sdaf Workspace And Tfvars use?

About 1.2k tokens (SKILL.md is roughly 4.7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 556 tokens, read only when the agent opens those files.

What are the alternatives to Sdaf Workspace And Tfvars?

Skills that share tags, products or a category with Sdaf Workspace And Tfvars: Avm Tf Documentation (Azure/terraform-azurerm-avm-ptn-alz, 135 stars), New Entity Requirements (elastic/terraform-provider-elasticstack, 210 stars), Terraform and OpenTofu Guide (agentscope-ai/QwenPaw, 36k stars) and Terraform Skill (antonbabenko/terraform-skill, 2.4k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Sdaf Workspace And Tfvars?

Azure (a GitHub organization, an official publisher) maintains it in Azure/sap-automation, which has 146 GitHub stars. The repository holds 19 skills in this directory. The repository was last updated on October 8, 2026.

Source: Azure/sap-automation on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.