Agent skill

Apex Terraform Search Import

by jonathan-vella in jonathan-vella/apex

WORKFLOW SKILL — Manual-only discovery and import of existing Azure resources into Terraform management.

MITAuto-check passedDevOps & Cloud

Install Apex Terraform Search Import

skills CLI
$ npx skills add jonathan-vella/apex --skill apex-terraform-search-import -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install jonathan-vella/apex apex-terraform-search-import --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/jonathan-vella/apex.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.github/skills/apex-terraform-search-import .claude/skills/apex-terraform-search-import && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
apex-terraform-search-import
GitHub stars
217
Token cost
~1.4k tokens
SKILL.md length
476 words
Files
3 (incl. scripts, references)
Skills in repo
39
Repo updated
First seen
Licence
MIT

At a glance

WORKFLOW SKILL — Manual-only discovery and import of existing Azure resources into Terraform management.

  • : automatic Terraform routing
  • SKILL.md covers Decision Tree, Rules, Manual Discovery Workflow… and Post-Import: Adopt AVM Modules, plus 3 more sections
  • Runs Shell scripts from its folder; calls terraform and az
  • New resource creation

What it does

Apex Terraform Search Import is an agent skill from jonathan-vella/apex. WORKFLOW SKILL — Manual-only discovery and import of existing Azure resources into Terraform management. WHEN: explicitly invoked as /apex-terraform-search-import for resource discovery or import planning. DO NOT USE FOR: automatic Terraform routing, Bicep code, new resource creation, architecture decisions. State changes require separate approval.

Its SKILL.md is about 1.4k tokens, which your agent loads only when the skill is triggered. The skill folder holds 4 other files, including scripts and reference files (for example `references/manual-import.md` and `scripts/list_resources.sh`). Compatibility notes: Manual workflow requires azurerm ~ 4.0 + Azure CLI. Search workflow requires Terraform = 1.14 (experimental for azurerm).

It sits in DevOps & Cloud, covering Infrastructure as code. It works with Terraform, Microsoft Azure and Bicep. The repository describes itself as: APEX turns Azure platform engineering requirements into verified, deploy-ready IaC — powered by GitHub Copilot agents, real-time pricing, and built-in compliance. The licence is MIT.

When your agent uses it

  • : automatic Terraform routing
  • New resource creation
  • Architecture decisions

Example prompts

  • “/apex-terraform-search-import”

Requirements

  • A Bash shell
  • Compatibility (from SKILL.md): Manual workflow requires azurerm ~> 4.0 + Azure CLI. Search workflow requires Terraform >= 1.14 (experimental for azurerm).

What it can do on your machine

Read from SKILL.md and the folder at commit d0d3f18. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 1 file in scripts/ (Shell), which the agent can run.

    Shell commands in SKILL.md call:

    • terraform
    • az

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • developer.hashicorp.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Manual workflow requires azurerm ~> 4.0 + Azure CLI. Search workflow requires Terraform >= 1.14 (experimental for azurerm).

    From compatibility in the SKILL.md frontmatter.

Context cost

Apex Terraform Search Import loads about 1.4k tokens when it runs, and up to ~3.7k if it reads all its reference files. Until then it costs about 96 tokens; SKILL.md has 476 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~96
When it runs · the whole SKILL.md, loaded when a task matches
~1.4k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~3.7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from jonathan-vella/apex at commit d0d3f18, republished under its MIT licence (© jonathan-vella). 476 words, ~1,399 tokens.

Download SKILL.mdSave it as .claude/skills/apex-terraform-search-import/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.
name
apex-terraform-search-import
description
**WORKFLOW SKILL** — Manual-only discovery and import of existing Azure resources into Terraform management. WHEN: explicitly invoked as /apex-terraform-search-import for resource discovery or import planning. DO NOT USE FOR: automatic Terraform routing, Bicep code, new resource creation, architecture decisions. State changes require separate approval.
compatibility
Manual workflow requires azurerm ~> 4.0 + Azure CLI. Search workflow requires Terraform >= 1.14 (experimental for azurerm).
user-invocable
true
disable-model-invocation
true
argument-hint
resource scope and search or import task

Terraform Search & Import for Azure

Manual-only: use /apex-terraform-search-import explicitly before this search/import workflow. Do not auto-invoke it from a generic Terraform request. Invocation does not authorize state adoption or apply; retain scope confirmation, import-only plan review and separate human authorization for state changes.

Discover existing Azure resources and generate Terraform configuration for bulk import.

References:


Decision Tree

text
┌─ Identify target Azure resources
│
├─ PRIMARY: Manual Discovery via az CLI (always works)
│  └─ az resource list → create import blocks → terraform plan → apply
│
└─ SECONDARY: Terraform Search (EXPERIMENTAL)
   ├─ Check: terraform version >= 1.14?
   │  └─ NO → use Manual workflow
   ├─ Check: azurerm supports list_resource_schemas for this type?
   │  └─ UNKNOWN/NO → use Manual workflow
   └─ YES to both → use Search workflow

Primary workflow = Manual Discovery via az CLI. Always works with azurerm ~> 4.0.

Search workflow is experimental — azurerm provider support for list_resource_schemas is TBD. Use Manual Discovery as the reliable default.


Rules

  • Manual Discovery is the primary path with azurerm ~> 4.0 and Azure CLI; Terraform Search is experimental and provider support is TBD.
  • Pin provider to ~> 4.0 and retain the lockfile. Validate renamed 4.x attributes against the approved provider schema before import.
  • Plan before apply: save and review an import-only plan, with no creates, updates, deletes or replacements; state adoption/apply requires explicit human authorization.
  • Adopt AVM modules post-import: raw azurerm_* is acceptable as a temporary state; refactor with moved {} blocks per apex-terraform-patterns references/refactor-module.md.
  • Document the source: record the originating az resource list query so discovery can be reproduced.
  • Out of scope: Bicep (apex-azure-bicep-patterns), new resources (apex-terraform-patterns), architecture decisions (apex-azure-adr).

Manual Discovery Workflow (Primary)

Three-step procedure: (1) discover existing resources via az resource list (by resource group, tag, or type-specific commands like az vm list); (2) generate resource + import blocks for each (full examples and bulk import scripts in references/manual-import.md); (3) terraform plan (review: imports only — no creates / destroys) → terraform apply. Use the saved-plan check in the manual reference before requesting approval; discovery or generated import blocks do not authorize state changes.

Import ID format: /subscriptions/{sub}/resourceGroups/{rg}/providers/{type}/{name}. The Azure-type ↔ Terraform-resource ↔ az CLI mapping table for the 8 most common services lives in references/manual-import.md.

Show full SKILL.md (183 more words)Show less

Post-Import: Adopt AVM Modules

After importing raw azurerm_* resources, refactor to AVM modules using moved {} blocks. See apex-terraform-patterns skill references/refactor-module.md for guidance.

Provider and Module Metadata

Use Azure MCP or Azure CLI to discover deployed resource IDs. Use the public Terraform Registry API for provider/module search and versions, then run caller-approved terraform init preserving the lockfile, and terraform providers schema -json for resource schemas. The list helper only inspects schemas; it never initializes or upgrades dependencies. A nonzero result means schema/initialization failure: stop and diagnose it, not "Search unsupported". Only a successful empty list means no list capability for the selected initialized provider. The canonical commands and source boundaries are in terraform-conventions.md.


Terraform Search Workflow (Experimental)

Warning: Requires Terraform >= 1.14 and azurerm provider support for list_resource_schemas (TBD). Use Manual Discovery above as primary path.

Uses .tfquery.hcl files with list blocks to discover resources, then terraform query -generate-config-out=imported.tf to generate config. Clean generated output by removing computed attrs, adding variables, applying CAF naming.


Reference Index

FileContents
references/manual-import.mdDetailed az CLI discovery, bulk import scripts, resource mapping
scripts/list_resources.shExtract supported list resources from providers

© jonathan-vella, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 2 other files (scripts, references) in .github/skills/apex-terraform-search-import of jonathan-vella/apex.

  • SKILL.md
  • references/manual-import.md
  • scripts/list_resources.sh

Open the folder on GitHubat commit d0d3f18

Compare with similar skills

Apex Terraform Search Import next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Apex Terraform Search Import compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Apex Terraform Search Import this skilljonathan-vella/apex217—~1.4kAutomated safety check: PassMIT
Iac Securityhardw00t/ai-security-arsenal105—~2.4kAutomated safety check: PassNone
Azure Deploymicrosoft/GitHub-Copilot-for-Azure2551 repos~1.6kAutomated safety check: PassMIT
Azure Preparemicrosoft/GitHub-Copilot-for-Azure2551 repos~3.2kAutomated safety check: PassMIT
Azure Validatemicrosoft/GitHub-Copilot-for-Azure2551 repos~880Automated safety check: PassMIT
Azure To AWSaws/agent-toolkit-for-aws2.8k—~5.5kAutomated safety check: PassApache-2.0

Similar skills

  • Iac Security

    hardw00t/ai-security-arsenal

    Infrastructure-as-Code security scanning router for Terraform, CloudFormation, Kubernetes manifests, Helm, ARM/Bicep.

    105 GitHub stars~2.4k tokensUpdated 5 mo ago
    DevOps & CloudAuto-check passed
  • Azure Deploy

    microsoft/GitHub-Copilot-for-Azure

    Official

    Execute Azure deployments for ALREADY-PREPARED applications that have existing .azure/deployment-plan.md and infrastructure files.

    255 GitHub starsUsed in 1 repo~1.6k tokens
    DevOps & CloudAuto-check passed
  • Azure Prepare

    microsoft/GitHub-Copilot-for-Azure

    Official

    Prepare azd-based Azure projects for deployment: generates azure.yaml, infrastructure (Bicep/Terraform), and Dockerfiles for the Azure Developer CLI (azd) workflow.

    255 GitHub starsUsed in 1 repo~3.2k tokens
    DevOps & CloudAuto-check passed
  • Azure Validate

    microsoft/GitHub-Copilot-for-Azure

    Official

    Pre-deployment validation for Azure readiness. An agent skill from microsoft/GitHub-Copilot-for-Azure.

    255 GitHub starsUsed in 1 repo~880 tokens
    DevOps & CloudAuto-check passed
  • Azure To AWS

    aws/agent-toolkit-for-aws

    Official

    Migrate workloads from Microsoft Azure to AWS. An agent skill from aws/agent-toolkit-for-aws.

    2.8k GitHub stars~5.5k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Azure Copilot

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure Copilot development including troubleshooting, decision making, architecture & design patterns, security, configuration, and integrations & coding patterns.

    776 GitHub stars~1.4k tokensUpdated 5 days ago
    DevOps & CloudAuto-check passed

More from jonathan-vella/apex

All 39 skills in this repo
  • Apex Azure Diagnostics

    jonathan-vella/apex

    WORKFLOW SKILL — Debug Azure production issues: Container Apps, Functions, App Service, AKS, VMs and messaging, with KQL log analysis.

    217 GitHub stars~2.1k tokensUpdated yesterday
    Auto-check passed
  • ANALYSIS SKILL — Azure Policy discovery: effective assignments (incl.

    217 GitHub stars~2.1k tokensUpdated yesterday
    Auto-check passed
  • Apex Context Management

    jonathan-vella/apex

    UTILITY SKILL — Two-mode context-window management. An agent skill from jonathan-vella/apex.

    217 GitHub stars~1.8k tokensUpdated yesterday
    Auto-check passed
  • Apex Python Diagrams

    jonathan-vella/apex

    UTILITY SKILL — Python diagram generation for Azure architectures, WAF/cost/compliance charts, ERDs, swimlanes, timelines, and wireframes.

    217 GitHub stars~2k tokensUpdated yesterday
    Auto-check passed
  • Apex Vendor Prompting

    jonathan-vella/apex

    ANALYSIS SKILL — Manual-only audit of Anthropic Claude Opus 5.5 / Sonnet 5.5 and OpenAI GPT-6 / GPT-5.6 prompting guidance and APEX conventions.

    217 GitHub stars~2.7k tokensUpdated yesterday
    Auto-check passed
  • Apex Agent Authoring

    jonathan-vella/apex

    WORKFLOW SKILL — Creates, restructures, and audits GitHub Copilot .agent.md and .prompt.md files with correct frontmatter, handoffs, model policy, context budgets, and validation.

    217 GitHub stars~1.8k tokensUpdated yesterday
    Auto-check passed

Categories

Questions about Apex Terraform Search Import

What does Apex Terraform Search Import do?

WORKFLOW SKILL — Manual-only discovery and import of existing Azure resources into Terraform management. Apex Terraform Search Import is an agent skill from jonathan-vella/apex. WORKFLOW SKILL — Manual-only discovery and import of existing Azure resources into Terraform management.

When should I use Apex Terraform Search Import?

Apex Terraform Search Import fits situations like: : automatic Terraform routing; new resource creation; architecture decisions.

How do I install Apex Terraform Search Import in Claude Code?

Run `npx skills add jonathan-vella/apex --skill apex-terraform-search-import -a claude-code`. Or copy the skill folder (.github/skills/apex-terraform-search-import in jonathan-vella/apex) into .claude/skills/apex-terraform-search-import in your project. Claude Code loads it when a task matches its description.

How do I install Apex Terraform Search Import in Codex?

Run `npx skills add jonathan-vella/apex --skill apex-terraform-search-import -a codex`. Or copy the skill folder (.github/skills/apex-terraform-search-import in jonathan-vella/apex) into .agents/skills/apex-terraform-search-import in your project. Codex loads it when a task matches its description.

Can I use Apex Terraform Search Import in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add jonathan-vella/apex --skill apex-terraform-search-import -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/apex-terraform-search-import, .gemini/skills/apex-terraform-search-import, .github/skills/apex-terraform-search-import and .opencode/skills/apex-terraform-search-import in your project.

What does Apex Terraform Search Import need to run?

Going by SKILL.md and its folder, Apex Terraform Search Import needs a shell for the scripts in its folder and the command-line tools its instructions call (terraform and az). Our summary lists: A Bash shell. Compatibility (from SKILL.md): Manual workflow requires azurerm ~> 4.0 + Azure CLI. Search workflow requires Terraform >= 1.14 (experimental for azurerm)..

Does Apex Terraform Search Import access the network?

SKILL.md names 1 domain. As links in the text: developer.hashicorp.com. This is read from the text; nothing was executed.

Is Apex Terraform Search Import safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Apex Terraform Search Import use?

Apex Terraform Search Import is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Apex Terraform Search Import use?

About 1.4k tokens (SKILL.md is roughly 5.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 2.3k tokens, read only when the agent opens those files.

What are the alternatives to Apex Terraform Search Import?

Skills that share tags, products or a category with Apex Terraform Search Import: Iac Security (hardw00t/ai-security-arsenal, 105 stars), Azure Deploy (microsoft/GitHub-Copilot-for-Azure, 255 stars), Azure Prepare (microsoft/GitHub-Copilot-for-Azure, 255 stars) and Azure Validate (microsoft/GitHub-Copilot-for-Azure, 255 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Apex Terraform Search Import?

jonathan-vella (a GitHub user) maintains it in jonathan-vella/apex, which has 217 GitHub stars. The repository holds 39 skills in this directory. The repository was last updated on October 10, 2026.

Source: jonathan-vella/apex on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.