Agent skill

Power Automate

by ericrisco in ericrisco/rsc-harness

A skill your agent uses when operating Microsoft Power Automate cloud flows from code — create, enable, update, list or delete via the Dataverse Web API (workflow table, category 5) with Entra ID…

MITAuto-check: notesDevelopment

Install Power Automate

skills CLI
$ npx skills add ericrisco/rsc-harness --skill power-automate -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install ericrisco/rsc-harness power-automate --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/ericrisco/rsc-harness.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/power-automate .claude/skills/power-automate && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
power-automate
GitHub stars
174
Token cost
~3.1k tokens
SKILL.md length
1,295 words
Files
6 (incl. references)
Skills in repo
233
Repo updated
First seen
Licence
MIT

At a glance

A skill your agent uses when operating Microsoft Power Automate cloud flows from code — create, enable, update, list or delete via the Dataverse Web API (workflow table, category 5) with Entra ID…

  • Works in 3 steps: Only flows inside a Dataverse solution… → api.flow.microsoft.com is unsupported.… → The unified Power Platform API…
  • Operating Microsoft Power Automate cloud flows from code — create
  • SKILL.md covers Connect first — API vs MCP, The workflow table — the data…, clientdata — the payload, and… and Dynamic lifecycle — token →…, plus 3 more sections
  • Calls curl and python3; reaches contoso.crm.dynamics.com and schema.management.azure.com; needs PA_CLIENT_SECRET

What it does

Power Automate is an agent skill from ericrisco/rsc-harness. Use when operating Microsoft Power Automate cloud flows from code — create, enable, update, list or delete via the Dataverse Web API (workflow table, category 5) with Entra ID OAuth2, plus run-history debugging. NOT designing the flow definition (that is automation-flows), NOT picking a platform by billing model (that is automation-strategy).

Its SKILL.md is about 3.1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files, including reference files (for example `evals/README.md`, `evals/cases.yaml` and `references/dataverse-web-api.md`).

It sits in Development, covering OAuth and OpenID Connect. It works with Power Automate and Microsoft Entra ID. The repository describes itself as: Your agent invents things because it has no memory, and can't touch your database because it has no arms. rsc is the meta-harness that gives it both, plus the trade to know the… The licence is MIT.

When your agent uses it

  • Operating Microsoft Power Automate cloud flows from code — create
  • Delete via the Dataverse Web API (workflow table
  • With Entra ID OAuth2
  • Plus run-history debugging

Example prompts

  • “/power-automate”

Requirements

  • Python 3
  • A credential in PA_CLIENT_SECRET

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. Only flows inside a Dataverse solution are code-manageable. Classic personal "My Flows" cannot be created or edited by code — the…
  2. api.flow.microsoft.com is unsupported. Microsoft's own words: use it "at your own risk," it is subject to breaking changes. The supported…
  3. The unified Power Platform API (api.powerplatform.com) is maturing fast. It already lists cloud flows (api-version 2024-10-01) and its…

What it can do on your machine

Read from SKILL.md and the folder at commit e3d5b33. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • curl
    • python3

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • contoso.crm.dynamics.com
    • schema.management.azure.com
    • login.microsoftonline.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • PA_CLIENT_SECRET

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Power Automate loads about 3.1k tokens when it runs, and up to ~6.9k if it reads all its reference files. Until then it costs about 91 tokens; SKILL.md has 1,295 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~91
When it runs · the whole SKILL.md, loaded when a task matches
~3.1k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~6.9k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:24
    Put these in `.env` (never inline a secret in a flow or a script):
  • NoteMentions a .env fileSKILL.md:148
    ecret | Env-specific, leaks in source | `.env`: `PA_DATAVERSE_URL`, `PA_TENANT_ID`, `PA_CLIENT_ID`, `PA_CLIENT_SECRET` |
  • NoteMentions a .env fileSKILL.md:153
    - [ ] `.env` set: `PA_DATAVERSE_URL` (no trailing slash), `PA_TENANT_ID`, `PA_CLIENT_ID`, `PA_CLIENT_SECRET`.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from ericrisco/rsc-harness at commit e3d5b33, republished under its MIT licence (© ericrisco). 1,295 words, ~3,134 tokens.

Download SKILL.mdSave it as .claude/skills/power-automate/SKILL.md (or your agent's skills folder). This skill also uses 5 other files; get the full folder from GitHub.
name
power-automate
description
Use when operating Microsoft Power Automate cloud flows from code — create, enable, update, list or delete via the Dataverse Web API (`workflow` table, category 5) with Entra ID OAuth2, plus run-history debugging. NOT designing the flow definition (that is `automation-flows`), NOT picking a platform by billing model (that is `automation-strategy`).
tags
power-automate, dataverse, microsoft, flows, entra, oauth, mcp, m365, automation
recommends
automation-flows, automation-strategy, api-connector-builder, webhooks
profiles
full
origin
risco

Power Automate — operate cloud flows through Dataverse, honestly

Drive Microsoft Power Automate cloud flows from code: create, enable, update, list, and delete them, plus pull run history for debugging. This skill operates the live surface. Deciding what the flow should do and shaping its trigger→actions→error definition is design — that lives in ../automation-flows/SKILL.md; this skill wraps that definition, ships it, and manages it.

Read these three facts before you write a line — they set the boundary of what is even possible:

  1. Only flows inside a Dataverse solution are code-manageable. Classic personal "My Flows" cannot be created or edited by code — the Microsoft docs say so explicitly. If the target is a My Flow, the honest answer is: move it into a solution first, or drive it by hand. There is no API workaround.
  2. api.flow.microsoft.com is unsupported. Microsoft's own words: use it "at your own risk," it is subject to breaking changes. The supported programmatic surface is the Dataverse Web API (or the .NET SDK) against the workflow table. For admin-style operations the Power Automate Management connector is the other supported path.
  3. The unified Power Platform API (api.powerplatform.com) is maturing fast. It already lists cloud flows (api-version 2024-10-01) and its Inventory API went GA in early 2026. It may eventually supersede the Dataverse path for flow management. Treat the Dataverse-vs-Power-Platform-API split as fast-moving — verify the current recommendation at author time.

Connect first — API vs MCP

Everything runs against your org's Dataverse Web API. Base URL: https://{org}.{region}.dynamics.com/api/data/v9.2 (find yours under Power Platform admin → your environment → developer resources). Auth is OAuth2 / Entra ID — a user token or, for CI, a service principal (app registration). For a service principal the org needs a Dataverse application user mapped to that app plus a security role; the token audience is the Dataverse URL. Full setup, including the delegated user_impersonation vs app .default scope split and the 401/403 causes, is in references/entra-auth-setup.md.

Put these in .env (never inline a secret in a flow or a script):

PA_DATAVERSE_URL=https://contoso.crm.dynamics.com   # no trailing slash, no /api/...
PA_TENANT_ID=<entra-tenant-guid>
PA_CLIENT_ID=<app-registration-client-id>
PA_CLIENT_SECRET=<app-registration-secret>          # service-principal flow only

When to use the REST API vs the MCP:

You need to…UseWhy
Create / enable / update / delete / list flowsDataverse Web APIThe only supported CRUD surface; scriptable, CI-friendly, service-principal auth.
Read a flow's action-level run inputs/outputs to debug a failureFlowStudio MCP (third-party)Dataverse exposes run records (flowrun table) but not per-action I/O; the MCP does. See references/flowstudio-mcp-and-limits.md.
Admin-scope operations (turn on/off across an environment)Power Automate Management connectorSupported management surface when raw Dataverse is awkward.

FlowStudio MCP is NOT Microsoft-affiliated — it is a de-facto third-party server (mcp.flowstudio.app/mcp). Microsoft's own MCP story is Copilot Studio consuming MCP servers and a Dataverse MCP, neither of which authors Power Automate flows. Flag the third-party dependency to anyone before wiring it into a pipeline.

The workflow table — the data model

Cloud flows are rows in the Dataverse Process (workflow) table. The columns that matter:

ColumnMeaningValues you use
categoryKind of process5 = modern cloud flow (automated / instant / scheduled). (0 classic workflow, 4 business process flow, 6 desktop flow.)
typeDefinition vs template1 = Definition (a runnable flow).
statecodeOn/off state0 = Draft (Off), 1 = Activated (On), 2 = Suspended.
nameDisplay nameyour string
primaryentityBound table"none" for automated/instant/scheduled flows
clientdataThe flow itselfstring-encoded JSON (see below)
workflowidGUID keyreturned on create; used in workflows({id})

List the cloud flows that are on:

bash
curl -s "$PA_DATAVERSE_URL/api/data/v9.2/workflows?\$filter=category eq 5 and statecode eq 1&\$select=name,statecode,type,workflowid" \
  -H "Authorization: Bearer $TOKEN" -H "OData-Version: 4.0" -H "Accept: application/json"

clientdata — the payload, and the trap that bites everyone

clientdata is a JSON string, not a nested JSON object. It is the serialized form of:

json
{
  "properties": {
    "connectionReferences": { "shared_commondataserviceforapps": { "runtimeSource": "embedded", "connection": {}, "api": { "name": "shared_commondataserviceforapps" } } },
    "definition": { "$schema": "https://schema.management.azure.com/providers/Microsoft.Logic/schemas/2016-06-01/workflowdefinition.json#", "contentVersion": "1.0.0.0", "triggers": { }, "actions": { } }
  },
  "schemaVersion": "1.0.0.0"
}

Two load-bearing parts:

  • definition — a Logic Apps workflow definition: triggers (exactly one) then actions. This is the design artifact. Do not invent it from scratch here — get the trigger→actions→branch→error shape from ../automation-flows/SKILL.md, then drop it into definition. Fastest reliable way to get a real one: build the flow once in the maker portal, export the solution, and copy its clientdata.
  • connectionReferences — the map from the definition's connectors to actual connections. A flow whose connection references are not authorized will not turn on. In a solution these are connection-reference records the target environment must resolve; unresolved references are the #1 reason a PATCH statecode=1 "succeeds" but the flow never runs.

The trap: clientdata must be escaped into a string before it goes in the request body — a nested object is rejected. In a script, JSON.stringify(clientDataObject) and assign the result; do not paste the object raw. Full annotated example — plus the endpoint cheat-sheet (token, list/filter, create, enable, update, delete, ExportSolution, share), OData headers and error handling — in references/dataverse-web-api.md.

Show full SKILL.md (547 more words)Show less

Dynamic lifecycle — token → create → validate → enable → manage → delete

1. Get a token (service-principal / client-credentials shown):

bash
TOKEN=$(curl -s -X POST "https://login.microsoftonline.com/$PA_TENANT_ID/oauth2/v2.0/token" \
  -d "grant_type=client_credentials" -d "client_id=$PA_CLIENT_ID" \
  -d "client_secret=$PA_CLIENT_SECRET" -d "scope=$PA_DATAVERSE_URL/.default" \
  | python3 -c "import sys,json;print(json.load(sys.stdin)['access_token'])")

2. Create the flow (comes up statecode=0, Off — expected):

bash
curl -s -i -X POST "$PA_DATAVERSE_URL/api/data/v9.2/workflows" \
  -H "Authorization: Bearer $TOKEN" -H "Content-Type: application/json" \
  -H "OData-Version: 4.0" \
  -d '{ "category": 5, "type": 1, "name": "Nightly sync", "primaryentity": "none", "clientdata": "<string-encoded JSON>" }'
# → 204 No Content. The workflowid is in the OData-EntityId response header:
#   OData-EntityId: .../workflows(00aa00aa-bb11-cc22-dd33-44ee44ee44ee)

3. Validate before enabling. Read it back, confirm category/type are right, and confirm every connectionReferences entry resolves to an authorized connection in this environment. Enabling a flow with dangling connections is the classic silent failure.

4. Enable — flip statecode to 1 (use If-Match: * for the update):

bash
curl -s -X PATCH "$PA_DATAVERSE_URL/api/data/v9.2/workflows(<workflowid>)" \
  -H "Authorization: Bearer $TOKEN" -H "Content-Type: application/json" \
  -H "OData-Version: 4.0" -H "If-Match: *" \
  -d '{ "statecode": 1 }'
# → 204 No Content

5. Manage — update the definition or owner with the same PATCH (send only the fields you change; to reassign use "ownerid@odata.bind": "systemusers(<id>)"). To turn a flow off, PATCH statecode=0.

6. Delete — irreversible; export first. There is no undo on DELETE. Before deleting, export the containing solution (POST /api/data/v9.2/ExportSolution → base64 zip you save to source control), so the flow can be reimported:

bash
curl -s -X DELETE "$PA_DATAVERSE_URL/api/data/v9.2/workflows(<workflowid>)" \
  -H "Authorization: Bearer $TOKEN"
# → 204 No Content

Debug a run — Dataverse's flowrun table lists run records but not per-action I/O. To see which action failed and with what payload, use FlowStudio MCP: list_live_flows → get_live_flow_runs → get_live_flow_run_action_outputs. See references/flowstudio-mcp-and-limits.md.

Boundaries — when it is not a flow you operate here

Power Automate is Microsoft's iPaaS across M365 and Dynamics; flows live in Dataverse and glue Outlook, Teams, SharePoint, Dynamics, and hundreds of connectors. This skill is for when the automation genuinely is a Power Automate flow you must operate by code. When it isn't:

  • "Send this email / read this calendar via Microsoft Graph from my own backend code" — not a flow at all; build a typed Graph client with ../api-connector-builder/SKILL.md (there is no first-party MS-Graph skill), or ../google-workspace/SKILL.md for the Google equivalent. Same route for a general typed client with auth/pagination/backoff — this skill uses the Dataverse endpoints surgically, it does not build a client.
  • "Power Automate or n8n/Make/Zapier?" — billing model and constraints decide that: ../automation-strategy/SKILL.md, before you commit to operating here.
  • "Receive my flow's HTTP-trigger POST in my app" — that inbound endpoint is ../webhooks/SKILL.md; this skill triggers and operates flows, it does not build the receiver.

Anti-patterns

Anti-patternWhy it bitesDo instead
Trying to CRUD a My Flow by codeUnsupported — silently impossible, not a bug you can fixMove it into a Dataverse solution, or drive it by hand
clientdata sent as a nested objectRequest rejected; the column expects an escaped stringSerialize (JSON.stringify) the definition+connectionReferences before sending
PATCH statecode=1 "worked" but the flow never runsConnection references unresolved/unauthorized in the target environmentAuthorize every connection reference before enabling; validate on read-back
Building against api.flow.microsoft.comUnsupported; breaks without warningDataverse Web API, or the Power Automate Management connector
DELETE with no exportNo undo; the flow and its history are goneExportSolution first, save the zip, then delete
Hardcoding the Dataverse URL / secretEnv-specific, leaks in source.env: PA_DATAVERSE_URL, PA_TENANT_ID, PA_CLIENT_ID, PA_CLIENT_SECRET
Assuming the Dataverse path is permanentPower Platform API is superseding surfaces piecemealRe-check api.powerplatform.com coverage at author time; the split is fast-moving

Checklist

  • .env set: PA_DATAVERSE_URL (no trailing slash), PA_TENANT_ID, PA_CLIENT_ID, PA_CLIENT_SECRET.
  • Confirmed the target is a solution-aware flow, not a My Flow.
  • Token acquired against scope {PA_DATAVERSE_URL}/.default (or delegated user_impersonation).
  • Create payload has category:5, type:1, primaryentity:"none", and clientdata as an escaped string.
  • Every connectionReferences entry maps to an authorized connection before enabling.
  • Flow enabled via PATCH statecode=1 and verified on read-back.
  • Solution exported before any DELETE.
  • No secrets or org URLs hardcoded; FlowStudio MCP (if used) flagged as third-party.

© ericrisco, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 5 other files (references) in skills/power-automate of ericrisco/rsc-harness.

  • SKILL.md
  • evals/README.md
  • evals/cases.yaml
  • references/dataverse-web-api.md
  • references/entra-auth-setup.md
  • references/flowstudio-mcp-and-limits.md

Open the folder on GitHubat commit e3d5b33

Compare with similar skills

Power Automate next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Power Automate compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Power Automate this skillericrisco/rsc-harness174—~3.1kAutomated safety check: NotesMIT
Msal Auth Code FlowAzureAD/microsoft-authentication-library-for-dotnet1.5k—~917Automated safety check: PassMIT
Entra Agent Idmicrosoft/GitHub-Copilot-for-Azure2552 repos~4kAutomated safety check: PassMIT
Azure APIM Policy Authoringthomast1906/github-copilot-agent-skills202—~1.5kAutomated safety check: PassMIT
Maui Authenticationdavidortinau/maui-skills175—~1.5kAutomated safety check: PassMIT
Implementing Google Workspace Sso Configurationmukul975/Anthropic-Cybersecurity-Skills34k—~2kAutomated safety check: PassApache-2.0

Similar skills

  • Msal Auth Code Flow

    AzureAD/microsoft-authentication-library-for-dotnet

    Authorization Code Flow for web applications using MSAL.NET confidential client to sign in users and access APIs on their behalf

    1.5k GitHub stars~917 tokensUpdated 2 days ago
    Backend & APIsAuto-check passed
  • Entra Agent Id

    microsoft/GitHub-Copilot-for-Azure

    Official

    Provision Microsoft Entra Agent Identity Blueprints, BlueprintPrincipals, and per-instance Agent Identities via Microsoft Graph, and configure OAuth 2.0 token exchange (fmipath, OBO, cross-tenant)…

    255 GitHub starsUsed in 2 repos~4k tokens
    Backend & APIsAuto-check passed
  • Azure APIM Policy Authoring

    thomast1906/github-copilot-agent-skills

    Generates Azure API Management policy XML for authentication, rate limiting, CORS, error handling and transformations, consulting Azure best-practice and documentation tools first.

    202 GitHub stars~1.5k tokensUpdated 2 days ago
    Backend & APIsAuto-check passed
  • Maui Authentication

    davidortinau/maui-skills

    Add authentication to .NET MAUI apps. An agent skill from davidortinau/maui-skills.

    175 GitHub stars~1.5k tokensUpdated 3 mo ago
    Backend & APIsAuto-check passed
  • Implementing Google Workspace Sso Configuration

    mukul975/Anthropic-Cybersecurity-Skills

    Configures SAML 2.0 single sign-on for Google Workspace against a third-party identity provider (Okta, Azure AD/Entra ID, ADFS), with Workspace as the Service Provider, to centralize authentication…

    34k GitHub stars~2k tokensUpdated 1 mo ago
    Backend & APIsAuto-check passed
  • Entra App Registration

    microsoft/GitHub-Copilot-for-Azure

    Official

    Guides Microsoft Entra ID app registration, OAuth 2.0 authentication, and MSAL integration.

    255 GitHub starsUsed in 2 repos~2.1k tokens
    Backend & APIsAuto-check passed

More from ericrisco/rsc-harness

All 233 skills in this repo
  • Ab Testing

    ericrisco/rsc-harness

    A skill your agent uses when designing or analyzing a controlled experiment — falsifiable hypothesis, sample size from an MDE, reading significance/CI/power, CUPED, or rescuing tests that won't go…

    174 GitHub stars~2.4k tokensUpdated 2 days ago
    Auto-check passed
  • Accessibility

    ericrisco/rsc-harness

    A skill your agent uses when making a web UI conform to WCAG 2.2 Level AA — axe-core or Lighthouse a11y violations, keyboard operability, focus management, ARIA roles/names/live regions, contrast…

    174 GitHub stars~3.4k tokensUpdated 2 days ago
    Auto-check passed
  • Ads

    ericrisco/rsc-harness

    A skill your agent uses when running or fixing paid acquisition on Google or Meta — campaign structure (Performance Max, Demand Gen, Search, Advantage+), platform-fit creative, budget/scaling rules…

    174 GitHub stars~2.2k tokensUpdated 2 days ago
    Auto-check passed
  • Agent Eval

    ericrisco/rsc-harness

    A skill your agent uses when measuring whether an LLM or agent system actually got better and gating merges on it: golden sets, fixing an inflated LLM-as-judge, scoring RAG (faithfulness, contextual…

    174 GitHub stars~3.2k tokensUpdated 2 days ago
    Auto-check passed
  • AI Media

    ericrisco/rsc-harness

    A skill your agent uses when a creative goal must become a finished media file: pick and order generative-media models per modality — AI voiceover, image-to-video clips, score — then glue them with…

    174 GitHub stars~3.3k tokensUpdated 2 days ago
    Auto-check passed
  • Analytics

    ericrisco/rsc-harness

    A skill your agent uses when instrumenting product or web analytics — GA4/PostHog SDK wiring, event taxonomy, funnels, double-counted events, consent gating, PII scrubbing.

    174 GitHub stars~2.8k tokensUpdated 2 days ago
    Auto-check passed

Questions about Power Automate

What does Power Automate do?

A skill your agent uses when operating Microsoft Power Automate cloud flows from code — create, enable, update, list or delete via the Dataverse Web API (workflow table, category 5) with Entra ID…. Power Automate is an agent skill from ericrisco/rsc-harness. Use when operating Microsoft Power Automate cloud flows from code — create, enable, update, list or delete via the Dataverse Web API (workflow table, category 5) with Entra ID OAuth2, plus run-history debugging.

When should I use Power Automate?

Power Automate fits situations like: operating Microsoft Power Automate cloud flows from code — create; delete via the Dataverse Web API (workflow table; with Entra ID OAuth2; plus run-history debugging.

How do I install Power Automate in Claude Code?

Run `npx skills add ericrisco/rsc-harness --skill power-automate -a claude-code`. Or copy the skill folder (skills/power-automate in ericrisco/rsc-harness) into .claude/skills/power-automate in your project. Claude Code loads it when a task matches its description.

How do I install Power Automate in Codex?

Run `npx skills add ericrisco/rsc-harness --skill power-automate -a codex`. Or copy the skill folder (skills/power-automate in ericrisco/rsc-harness) into .agents/skills/power-automate in your project. Codex loads it when a task matches its description.

Can I use Power Automate in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add ericrisco/rsc-harness --skill power-automate -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/power-automate, .gemini/skills/power-automate, .github/skills/power-automate and .opencode/skills/power-automate in your project.

What does Power Automate need to run?

Going by SKILL.md and its folder, Power Automate needs the command-line tools its instructions call (curl and python3) and credentials named PA_CLIENT_SECRET. Our summary lists: Python 3; A credential in PA_CLIENT_SECRET.

Does Power Automate access the network?

SKILL.md names 3 domains. In commands or code: contoso.crm.dynamics.com, schema.management.azure.com and login.microsoftonline.com; the agent is likely to contact these when it follows the instructions. This is read from the text; nothing was executed.

Is Power Automate safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Power Automate use?

Power Automate is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Power Automate use?

About 3.1k tokens (SKILL.md is roughly 13k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 3.8k tokens, read only when the agent opens those files.

What are the alternatives to Power Automate?

Skills that share tags, products or a category with Power Automate: Msal Auth Code Flow (AzureAD/microsoft-authentication-library-for-dotnet, 1.5k stars), Entra Agent Id (microsoft/GitHub-Copilot-for-Azure, 255 stars), Azure APIM Policy Authoring (thomast1906/github-copilot-agent-skills, 202 stars) and Maui Authentication (davidortinau/maui-skills, 175 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Power Automate?

ericrisco (a GitHub user) maintains it in ericrisco/rsc-harness, which has 174 GitHub stars. The repository holds 233 skills in this directory. The repository was last updated on October 7, 2026.

Source: ericrisco/rsc-harness on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.