Official agent skill

Azure Attestation

by MicrosoftDocs in MicrosoftDocs/Agent-Skills

Expert knowledge for Azure Attestation development including troubleshooting, best practices, security, configuration, and deployment.

OfficialCC-BY-4.0Auto-check passedDevOps & Cloud

Install Azure Attestation

skills CLI
$ npx skills add MicrosoftDocs/Agent-Skills --skill azure-attestation -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install MicrosoftDocs/Agent-Skills azure-attestation --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/MicrosoftDocs/Agent-Skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/azure-attestation .claude/skills/azure-attestation && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
azure-attestation
GitHub stars
775
Token cost
~1.5k tokens
SKILL.md length
443 words
Files
1
Skills in repo
149
Repo updated
First seen
Licence
CC-BY-4.0

At a glance

Expert knowledge for Azure Attestation development including troubleshooting, best practices, security, configuration, and deployment.

  • Validating attestation tokens
  • SKILL.md covers How to Use This Skill and Category Index
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Authoring policies

What it does

Azure Attestation is an agent skill from MicrosoftDocs/Agent-Skills, published by the product's own GitHub organization. Expert knowledge for Azure Attestation development including troubleshooting, best practices, security, configuration, and deployment. Use when validating attestation tokens, authoring policies, enforcing SGX/TPM baselines, or configuring private endpoints, and other Azure Attestation related development tasks. Not for Azure Confidential Computing (use azure-confidential-computing), Azure Virtual Enclaves (use azure-virtual-enclaves), Azure Dedicated HSM (use azure-dedicated-hsm), Azure Key Vault (use…

Its SKILL.md is about 1.5k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts. Compatibility notes: Requires network access. Uses mcpmicrosoftdocs:microsoftdocsfetch or fetchwebpage to retrieve documentation.

It sits in DevOps & Cloud, covering Deployment. It works with Microsoft Azure and Azure Key Vault. The repository describes itself as: Curated Agent Skills for Microsoft & Azure – giving AI coding assistants structured, real-time expertise from Microsoft Learn docs. The licence is CC-BY-4.0.

When your agent uses it

  • Validating attestation tokens
  • Authoring policies
  • Enforcing SGX/TPM baselines
  • Configuring private endpoints

Example prompts

  • “/azure-attestation”

Requirements

  • Compatibility (from SKILL.md): Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.

What it can do on your machine

Read from SKILL.md and the folder at commit ba74e8f. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • learn.microsoft.com
    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.

    From compatibility in the SKILL.md frontmatter.

Context cost

Azure Attestation loads about 1.5k tokens when it runs. Until then it costs about 136 tokens; SKILL.md has 443 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~136
When it runs · the whole SKILL.md, loaded when a task matches
~1.5k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from MicrosoftDocs/Agent-Skills at commit ba74e8f, republished under its CC-BY-4.0 licence (© MicrosoftDocs). 443 words, ~1,536 tokens.

Download SKILL.mdSave it as .claude/skills/azure-attestation/SKILL.md (or your agent's skills folder).
name
azure-attestation
description
Expert knowledge for Azure Attestation development including troubleshooting, best practices, security, configuration, and deployment. Use when validating attestation tokens, authoring policies, enforcing SGX/TPM baselines, or configuring private endpoints, and other Azure Attestation related development tasks. Not for Azure Confidential Computing (use azure-confidential-computing), Azure Virtual Enclaves (use azure-virtual-enclaves), Azure Dedicated HSM (use azure-dedicated-hsm), Azure Key Vault (use azure-key-vault).
compatibility
Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.
metadata.generated_at
2026-09-27
metadata.generator
docs2skills/1.0.0

Azure Attestation Skill

This skill provides expert guidance for Azure Attestation. Covers troubleshooting, best practices, security, configuration, and deployment. It combines local quick-reference content with remote documentation fetching capabilities.

How to Use This Skill

IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g., L35-L120), use read_file with the specified lines. For categories with file links (e.g., [security.md](security.md)), use read_file on the linked reference file

IMPORTANT for Agent: If metadata.generated_at is more than 3 months old, suggest the user pull the latest version from the repository. If mcp_microsoftdocs tools are not available, suggest the user install it: Installation Guide

This skill requires network access to fetch documentation content:

  • Preferred: Use mcp_microsoftdocs:microsoft_docs_fetch with query string from=learn-agent-skill. Returns Markdown.
  • Fallback: Use fetch_webpage with query string from=learn-agent-skill&accept=text/markdown. Returns Markdown.

Category Index

CategoryLinesDescription
TroubleshootingL33-L37Diagnosing and fixing common Azure Attestation failures, error codes, policy/quote validation issues, configuration mistakes, and connectivity or runtime problems.
Best PracticesL38-L46Guidance on validating attestation tokens, writing secure attestation policies, and configuring/enforcing SGX and TPM attestation baselines using sample policies.
SecurityL47-L52Using Azure Policy with Attestation, enforcing compliance, and best practices to harden, secure, and protect Azure Attestation deployments and configurations.
ConfigurationL53-L69Configuring Azure Attestation policies (grammar, versions, claim rules), policy signer certs, and monitoring/logging via Azure Monitor, CLI, PowerShell, and log schema.
DeploymentL70-L73How to create and configure a private endpoint for Azure Attestation using PowerShell, including network setup and secure access to attestation resources.
Troubleshooting
TopicURL
Troubleshoot common Azure Attestation errors and issueshttps://learn.microsoft.com/en-us/azure/attestation/troubleshoot-guide
Show full SKILL.md (181 more words)Show less
Best Practices
TopicURL
Interpret and validate Azure Attestation tokens with exampleshttps://learn.microsoft.com/en-us/azure/attestation/attestation-token-examples
Author secure and correct Azure Attestation policieshttps://learn.microsoft.com/en-us/azure/attestation/author-sign-policy
Configure custom TCB baseline enforcement for SGX attestationhttps://learn.microsoft.com/en-us/azure/attestation/custom-tcb-baseline-enforcement
Use sample SGX attestation policies in Azurehttps://learn.microsoft.com/en-us/azure/attestation/policy-examples
Use sample TPM attestation policies in Azurehttps://learn.microsoft.com/en-us/azure/attestation/tpm-attestation-sample-policies
Security
TopicURL
Apply built-in Azure Policy definitions for Attestationhttps://learn.microsoft.com/en-us/azure/attestation/policy-reference
Harden and secure Azure Attestation deploymentshttps://learn.microsoft.com/en-us/azure/attestation/secure-attestation
Configuration
TopicURL
Use Azure Attestation claim rule functions and operatorshttps://learn.microsoft.com/en-us/azure/attestation/claim-rule-functions
Use Azure Attestation claim rule grammar in policieshttps://learn.microsoft.com/en-us/azure/attestation/claim-rule-grammar
Understand Azure Attestation claim sets and categorieshttps://learn.microsoft.com/en-us/azure/attestation/claim-sets
Enable diagnostic logging for Azure Attestationhttps://learn.microsoft.com/en-us/azure/attestation/enable-logging
Reference for Azure Attestation monitoring and log schemahttps://learn.microsoft.com/en-us/azure/attestation/logs-data-reference
Monitor Azure Attestation with Azure Monitorhttps://learn.microsoft.com/en-us/azure/attestation/monitor-logs
Configure Azure Attestation policy signer certificateshttps://learn.microsoft.com/en-us/azure/attestation/policy-signer-examples
Configure Azure Attestation policy language version 1.0https://learn.microsoft.com/en-us/azure/attestation/policy-version-1-0
Configure Azure Attestation policy language version 1.1https://learn.microsoft.com/en-us/azure/attestation/policy-version-1-1
Configure Azure Attestation policy language version 1.2https://learn.microsoft.com/en-us/azure/attestation/policy-version-1-2
Set up Azure Attestation using Azure CLIhttps://learn.microsoft.com/en-us/azure/attestation/quickstart-azure-cli
Configure Azure Attestation provider with PowerShellhttps://learn.microsoft.com/en-us/azure/attestation/quickstart-powershell
Understand and use Azure Attestation log datahttps://learn.microsoft.com/en-us/azure/attestation/view-logs
Deployment
TopicURL
Create Azure Attestation private endpoint with PowerShellhttps://learn.microsoft.com/en-us/azure/attestation/private-endpoint-powershell

© MicrosoftDocs, CC-BY-4.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/azure-attestation of MicrosoftDocs/Agent-Skills.

Open the folder on GitHubat commit ba74e8f

Compare with similar skills

Azure Attestation next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Azure Attestation compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Azure Attestation this skillMicrosoftDocs/Agent-Skills775—~1.5kAutomated safety check: PassCC-BY-4.0
Azsdk Common Live And Recorded TestsAzure/azure-sdk-tools134—~1.5kAutomated safety check: NotesMIT
Environment Deploymentmicrosoft/physical-ai-toolchain122—~5.8kAutomated safety check: PassMIT
Azure Architecture Autopilotgithub/awesome-copilot40k1 repos~1.9kAutomated safety check: PassMIT
Aspiremicrosoft/aspire.dev1964 repos~1.1kAutomated safety check: PassMIT
Capacitymicrosoft/GitHub-Copilot-for-Azure2552 repos~1.7kAutomated safety check: PassMIT

Similar skills

  • Official

    Deploy test resources and run Azure SDK tests in live, record, or playback mode.

    134 GitHub stars~1.5k tokensUpdated yesterday
    DevOps & CloudAuto-check: notes
  • Environment Deployment

    microsoft/physical-ai-toolchain

    Official

    Generate, transfer, and consume environment-specific Azure, AKS, OSMO, ACR, and Azure ML deployment bundles.

    122 GitHub stars~5.8k tokensUpdated today
    DevOps & CloudAuto-check passed
  • Azure Architecture Autopilot

    github/awesome-copilot

    Official

    Designs Azure infrastructure from a natural-language description, or diagrams an existing resource group, then refines the design through conversation and deploys it with Bicep.

    40k GitHub starsUsed in 1 repo~1.9k tokens
    DevOps & CloudAuto-check passed
  • Aspire

    microsoft/aspire.dev

    Official

    Orchestrates Aspire distributed applications using the Aspire CLI for running, debugging, and managing distributed apps.

    196 GitHub starsUsed in 4 repos~1.1k tokens
    DevOps & CloudAuto-check passed
  • Capacity

    microsoft/GitHub-Copilot-for-Azure

    Official

    Discovers available Azure OpenAI model capacity across regions and projects.

    255 GitHub starsUsed in 2 repos~1.7k tokens
    DevOps & CloudAuto-check passed
  • Aspire Monitoring

    CommunityToolkit/Aspire

    ANALYSIS SKILL - Observe Aspire apps: logs, traces, metrics, resource state, telemetry export, browser telemetry, and the standalone dashboard.

    629 GitHub stars~3.5k tokensUpdated today
    DevOps & CloudAuto-check passed

More from MicrosoftDocs/Agent-Skills

All 149 skills in this repo
  • Azure Personalizer

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure AI Personalizer development including troubleshooting, decision making, security, configuration, and integrations & coding patterns.

    775 GitHub starsUsed in 1 repo~1.1k tokens
    Auto-check passed
  • Azure Architecture Advisor

    MicrosoftDocs/Agent-Skills

    Official

    Guides Azure solution design by category, from reference architectures and design patterns to technology choices and migrations, fetching current Microsoft Learn pages over the network.

    775 GitHub stars~15k tokensUpdated yesterday
    Auto-check passed
  • Azure Advisor Guidance

    MicrosoftDocs/Agent-Skills

    Official

    Reference guidance for Azure Advisor work: recommendations, alerts and digests, workbooks, RBAC access and sovereign-cloud limits, fetched from Microsoft Learn.

    775 GitHub stars~1.7k tokensUpdated yesterday
    Auto-check passed
  • Azure AI Vision Reference

    MicrosoftDocs/Agent-Skills

    Official

    Looks up Microsoft Learn guidance for Azure AI Vision: Image Analysis, Read OCR containers, smart-crop thumbnails, background removal and video frame analysis, plus limits and deployment.

    775 GitHub stars~1.6k tokensUpdated yesterday
    Auto-check passed
  • Azure Analysis Services

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure Analysis Services development including troubleshooting.

    775 GitHub stars~608 tokensUpdated yesterday
    Auto-check passed
  • Azure Anomaly Detector

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure AI Anomaly Detector development including troubleshooting, best practices, limits & quotas, configuration, and deployment.

    775 GitHub stars~1.1k tokensUpdated yesterday
    Auto-check passed

Categories

Questions about Azure Attestation

What does Azure Attestation do?

Expert knowledge for Azure Attestation development including troubleshooting, best practices, security, configuration, and deployment. Azure Attestation is an agent skill from MicrosoftDocs/Agent-Skills, published by the product's own GitHub organization. Expert knowledge for Azure Attestation development including troubleshooting, best practices, security, configuration, and deployment.

When should I use Azure Attestation?

Azure Attestation fits situations like: validating attestation tokens; authoring policies; enforcing SGX/TPM baselines; configuring private endpoints.

How do I install Azure Attestation in Claude Code?

Run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-attestation -a claude-code`. Or copy the skill folder (skills/azure-attestation in MicrosoftDocs/Agent-Skills) into .claude/skills/azure-attestation in your project. Claude Code loads it when a task matches its description.

How do I install Azure Attestation in Codex?

Run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-attestation -a codex`. Or copy the skill folder (skills/azure-attestation in MicrosoftDocs/Agent-Skills) into .agents/skills/azure-attestation in your project. Codex loads it when a task matches its description.

Can I use Azure Attestation in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-attestation -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/azure-attestation, .gemini/skills/azure-attestation, .github/skills/azure-attestation and .opencode/skills/azure-attestation in your project.

What does Azure Attestation need to run?

SKILL.md names no scripts, command-line tools or credentials: Azure Attestation is instructions for the agent only. Compatibility (from SKILL.md): Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation..

Does Azure Attestation access the network?

SKILL.md names 2 domains. As links in the text: learn.microsoft.com and github.com. This is read from the text; nothing was executed.

Is Azure Attestation safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Azure Attestation use?

Azure Attestation is published under the CC-BY-4.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Azure Attestation use?

About 1.5k tokens (SKILL.md is roughly 6.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Azure Attestation?

Skills that share tags, products or a category with Azure Attestation: Azsdk Common Live And Recorded Tests (Azure/azure-sdk-tools, 134 stars), Environment Deployment (microsoft/physical-ai-toolchain, 122 stars), Azure Architecture Autopilot (github/awesome-copilot, 40k stars) and Aspire (microsoft/aspire.dev, 196 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Azure Attestation?

MicrosoftDocs (a GitHub organization, an official publisher) maintains it in MicrosoftDocs/Agent-Skills, which has 775 GitHub stars. The repository holds 149 skills in this directory. The repository was last updated on October 5, 2026.

Source: MicrosoftDocs/Agent-Skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.