Official agent skill

Azure Confidential Ledger

by MicrosoftDocs in MicrosoftDocs/Agent-Skills

Expert knowledge for Azure Confidential Ledger development including troubleshooting, decision making, security, integrations & coding patterns, and deployment.

OfficialCC-BY-4.0Auto-check passedDevOps & Cloud

Install Azure Confidential Ledger

skills CLI
$ npx skills add MicrosoftDocs/Agent-Skills --skill azure-confidential-ledger -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install MicrosoftDocs/Agent-Skills azure-confidential-ledger --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/MicrosoftDocs/Agent-Skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/azure-confidential-ledger .claude/skills/azure-confidential-ledger && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
azure-confidential-ledger
GitHub stars
777
Token cost
~1.7k tokens
SKILL.md length
469 words
Files
1
Skills in repo
147
Repo updated
First seen
Licence
CC-BY-4.0

At a glance

Expert knowledge for Azure Confidential Ledger development including troubleshooting, decision making, security, integrations & coding patterns, and deployment.

  • Configuring ACL auth/attestation
  • SKILL.md covers How to Use This Skill and Category Index
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Integrating with Blob/Cosmos

What it does

Azure Confidential Ledger is an agent skill from MicrosoftDocs/Agent-Skills, published by the product's own GitHub organization. Expert knowledge for Azure Confidential Ledger development including troubleshooting, decision making, security, integrations & coding patterns, and deployment. Use when configuring ACL auth/attestation, integrating with Blob/Cosmos, using MST payloads, or deploying via ARM/Terraform, and other Azure Confidential Ledger related development tasks. Not for Azure Confidential Computing (use azure-confidential-computing), Azure Key Vault (use azure-key-vault), Azure Dedicated HSM (use azure-dedicated-hsm), Azure…

Its SKILL.md is about 1.7k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts. Compatibility notes: Requires network access. Uses mcpmicrosoftdocs:microsoftdocsfetch or fetchwebpage to retrieve documentation.

It sits in DevOps & Cloud, covering Infrastructure as code and Deployment. It works with Microsoft Azure, Azure Key Vault and Terraform. The repository describes itself as: Curated Agent Skills for Microsoft & Azure – giving AI coding assistants structured, real-time expertise from Microsoft Learn docs. The licence is CC-BY-4.0.

When your agent uses it

  • Configuring ACL auth/attestation
  • Integrating with Blob/Cosmos
  • Using MST payloads
  • Deploying via ARM/Terraform

Example prompts

  • “/azure-confidential-ledger”

Requirements

  • Compatibility (from SKILL.md): Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.

What it can do on your machine

Read from SKILL.md and the folder at commit ba74e8f. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • learn.microsoft.com
    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.

    From compatibility in the SKILL.md frontmatter.

Context cost

Azure Confidential Ledger loads about 1.7k tokens when it runs. Until then it costs about 144 tokens; SKILL.md has 469 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~144
When it runs · the whole SKILL.md, loaded when a task matches
~1.7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from MicrosoftDocs/Agent-Skills at commit ba74e8f, republished under its CC-BY-4.0 licence (© MicrosoftDocs). 469 words, ~1,664 tokens.

Download SKILL.mdSave it as .claude/skills/azure-confidential-ledger/SKILL.md (or your agent's skills folder).
name
azure-confidential-ledger
description
Expert knowledge for Azure Confidential Ledger development including troubleshooting, decision making, security, integrations & coding patterns, and deployment. Use when configuring ACL auth/attestation, integrating with Blob/Cosmos, using MST payloads, or deploying via ARM/Terraform, and other Azure Confidential Ledger related development tasks. Not for Azure Confidential Computing (use azure-confidential-computing), Azure Key Vault (use azure-key-vault), Azure Dedicated HSM (use azure-dedicated-hsm), Azure Payment Hsm (use azure-payment-hsm).
compatibility
Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.
metadata.generated_at
2026-09-27
metadata.generator
docs2skills/1.0.0

Azure Confidential Ledger Skill

This skill provides expert guidance for Azure Confidential Ledger. Covers troubleshooting, decision making, security, integrations & coding patterns, and deployment. It combines local quick-reference content with remote documentation fetching capabilities.

How to Use This Skill

IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g., L35-L120), use read_file with the specified lines. For categories with file links (e.g., [security.md](security.md)), use read_file on the linked reference file

IMPORTANT for Agent: If metadata.generated_at is more than 3 months old, suggest the user pull the latest version from the repository. If mcp_microsoftdocs tools are not available, suggest the user install it: Installation Guide

This skill requires network access to fetch documentation content:

  • Preferred: Use mcp_microsoftdocs:microsoft_docs_fetch with query string from=learn-agent-skill. Returns Markdown.
  • Fallback: Use fetch_webpage with query string from=learn-agent-skill&accept=text/markdown. Returns Markdown.

Category Index

CategoryLinesDescription
TroubleshootingL33-L38Diagnosing and resolving Microsoft Signing Transparency (MST) ledger verification issues, plus steps to verify ledger integrity and inspect individual ledger entries.
Decision MakingL39-L44Choosing between ACL Explorer tools for viewing/querying ledgers, and guidance on migrating applications and data from Managed CCF to Azure Confidential Ledger
SecurityL45-L57Auth, attestation, identity, and access control for Confidential Ledger: Entra ID setup, app registration, RBAC, cert-based users, client certs, node quote verification, and deployment security.
Integrations & Coding PatternsL58-L67Patterns and examples for integrating ACL with Blob Storage, Power Automate, Cosmos DB, organizing ledger data, designing MST payloads/claims, and writing JavaScript user-defined functions.
DeploymentL68-L72How to deploy and provision Azure Confidential Ledger instances using ARM templates or Terraform, including required parameters and configuration steps.
Troubleshooting
Show full SKILL.md (182 more words)Show less
Decision Making
Security
TopicURL
Authenticate and attest Azure Confidential Ledger nodes securelyhttps://learn.microsoft.com/en-us/azure/confidential-ledger/authenticate-ledger-nodes
Configure Microsoft Entra authentication for Azure confidential ledgerhttps://learn.microsoft.com/en-us/azure/confidential-ledger/authentication-azure-ad
Create and configure client certificates for Confidential Ledgerhttps://learn.microsoft.com/en-us/azure/confidential-ledger/create-client-certificate
Manage Entra token-based users and roles in Confidential Ledgerhttps://learn.microsoft.com/en-us/azure/confidential-ledger/manage-azure-ad-token-based-users
Manage certificate-based users and roles in Confidential Ledgerhttps://learn.microsoft.com/en-us/azure/confidential-ledger/manage-certificate-based-users
Register Confidential Ledger applications in Microsoft Entra IDhttps://learn.microsoft.com/en-us/azure/confidential-ledger/register-application
Secure Azure Confidential Ledger deployments and accesshttps://learn.microsoft.com/en-us/azure/confidential-ledger/secure-confidential-ledger
Implement advanced UDFs with RBAC in Confidential Ledgerhttps://learn.microsoft.com/en-us/azure/confidential-ledger/user-defined-endpoints
Verify node quotes and establish trust in Confidential Ledgerhttps://learn.microsoft.com/en-us/azure/confidential-ledger/verify-node-quotes
Integrations & Coding Patterns
TopicURL
Integrate Blob Storage digests with Azure Confidential Ledgerhttps://learn.microsoft.com/en-us/azure/confidential-ledger/create-blob-managed-app
Integrate Azure confidential ledger with Power Automate and Cosmos DBhttps://learn.microsoft.com/en-us/azure/confidential-ledger/create-power-automate-workflow
Organize and access data in Azure confidential ledgerhttps://learn.microsoft.com/en-us/azure/confidential-ledger/data-organization
Design MST payloads, claims, and auditing workflowshttps://learn.microsoft.com/en-us/azure/confidential-ledger/microsoft-signing-transparency-usage
Run user-defined functions in Azure Confidential Ledgerhttps://learn.microsoft.com/en-us/azure/confidential-ledger/server-side-programming
Create simple JavaScript UDFs in Confidential Ledgerhttps://learn.microsoft.com/en-us/azure/confidential-ledger/user-defined-functions
Deployment
TopicURL
Deploy Azure Confidential Ledger via ARM templatehttps://learn.microsoft.com/en-us/azure/confidential-ledger/quickstart-template
Provision Azure Confidential Ledger using Terraformhttps://learn.microsoft.com/en-us/azure/confidential-ledger/quickstart-terraform

© MicrosoftDocs, CC-BY-4.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/azure-confidential-ledger of MicrosoftDocs/Agent-Skills.

Open the folder on GitHubat commit ba74e8f

Compare with similar skills

Azure Confidential Ledger next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Azure Confidential Ledger compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Azure Confidential Ledger this skillMicrosoftDocs/Agent-Skills777—~1.7kAutomated safety check: PassCC-BY-4.0
Azsdk Common Live And Recorded TestsAzure/azure-sdk-tools134—~1.5kAutomated safety check: NotesMIT
Environment Deploymentmicrosoft/physical-ai-toolchain123—~5.9kAutomated safety check: PassMIT
Apex Azure Deployjonathan-vella/apex217—~2.3kAutomated safety check: PassMIT
Azure Deploymicrosoft/GitHub-Copilot-for-Azure2551 repos~1.6kAutomated safety check: PassMIT
Azure Preparemicrosoft/GitHub-Copilot-for-Azure2551 repos~3.2kAutomated safety check: PassMIT

Similar skills

  • Official

    Deploy test resources and run Azure SDK tests in live, record, or playback mode.

    134 GitHub stars~1.5k tokensUpdated today
    DevOps & CloudAuto-check: notes
  • Environment Deployment

    microsoft/physical-ai-toolchain

    Official

    Generate, transfer, and consume environment-specific Azure, AKS, OSMO, ACR, and Azure ML deployment bundles.

    123 GitHub stars~5.9k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Apex Azure Deploy

    jonathan-vella/apex

    WORKFLOW SKILL — Execute Azure deployments (azd up, azd deploy, terraform apply) for already-prepared apps with built-in error recovery.

    217 GitHub stars~2.3k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Azure Deploy

    microsoft/GitHub-Copilot-for-Azure

    Official

    Execute Azure deployments for ALREADY-PREPARED applications that have existing .azure/deployment-plan.md and infrastructure files.

    255 GitHub starsUsed in 1 repo~1.6k tokens
    DevOps & CloudAuto-check passed
  • Azure Prepare

    microsoft/GitHub-Copilot-for-Azure

    Official

    Prepare azd-based Azure projects for deployment: generates azure.yaml, infrastructure (Bicep/Terraform), and Dockerfiles for the Azure Developer CLI (azd) workflow.

    255 GitHub starsUsed in 1 repo~3.2k tokens
    DevOps & CloudAuto-check passed
  • Azure Validate

    microsoft/GitHub-Copilot-for-Azure

    Official

    Pre-deployment validation for Azure readiness. An agent skill from microsoft/GitHub-Copilot-for-Azure.

    255 GitHub starsUsed in 1 repo~880 tokens
    DevOps & CloudAuto-check passed

More from MicrosoftDocs/Agent-Skills

All 147 skills in this repo
  • Azure Architecture Advisor

    MicrosoftDocs/Agent-Skills

    Official

    Guides Azure solution design by category, from reference architectures and design patterns to technology choices and migrations, fetching current Microsoft Learn pages over the network.

    777 GitHub stars~15k tokensUpdated 3 days ago
    Auto-check passed
  • Azure Advisor Guidance

    MicrosoftDocs/Agent-Skills

    Official

    Reference guidance for Azure Advisor work: recommendations, alerts and digests, workbooks, RBAC access and sovereign-cloud limits, fetched from Microsoft Learn.

    777 GitHub stars~1.7k tokensUpdated 3 days ago
    Auto-check passed
  • Azure AI Vision Reference

    MicrosoftDocs/Agent-Skills

    Official

    Looks up Microsoft Learn guidance for Azure AI Vision: Image Analysis, Read OCR containers, smart-crop thumbnails, background removal and video frame analysis, plus limits and deployment.

    777 GitHub stars~1.6k tokensUpdated 3 days ago
    Auto-check passed
  • Azure Analysis Services

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure Analysis Services development including troubleshooting.

    777 GitHub stars~608 tokensUpdated 3 days ago
    Auto-check passed
  • Azure Anomaly Detector

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure AI Anomaly Detector development including troubleshooting, best practices, limits & quotas, configuration, and deployment.

    777 GitHub stars~1.1k tokensUpdated 3 days ago
    Auto-check passed
  • Azure Anyscale On Azure

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure Anyscale On Azure development including limits & quotas, security, configuration, and deployment.

    777 GitHub stars~953 tokensUpdated 3 days ago
    Auto-check passed

Categories

Questions about Azure Confidential Ledger

What does Azure Confidential Ledger do?

Expert knowledge for Azure Confidential Ledger development including troubleshooting, decision making, security, integrations & coding patterns, and deployment. Azure Confidential Ledger is an agent skill from MicrosoftDocs/Agent-Skills, published by the product's own GitHub organization. Expert knowledge for Azure Confidential Ledger development including troubleshooting, decision making, security, integrations & coding patterns, and deployment.

When should I use Azure Confidential Ledger?

Azure Confidential Ledger fits situations like: configuring ACL auth/attestation; integrating with Blob/Cosmos; using MST payloads; deploying via ARM/Terraform.

How do I install Azure Confidential Ledger in Claude Code?

Run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-confidential-ledger -a claude-code`. Or copy the skill folder (skills/azure-confidential-ledger in MicrosoftDocs/Agent-Skills) into .claude/skills/azure-confidential-ledger in your project. Claude Code loads it when a task matches its description.

How do I install Azure Confidential Ledger in Codex?

Run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-confidential-ledger -a codex`. Or copy the skill folder (skills/azure-confidential-ledger in MicrosoftDocs/Agent-Skills) into .agents/skills/azure-confidential-ledger in your project. Codex loads it when a task matches its description.

Can I use Azure Confidential Ledger in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-confidential-ledger -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/azure-confidential-ledger, .gemini/skills/azure-confidential-ledger, .github/skills/azure-confidential-ledger and .opencode/skills/azure-confidential-ledger in your project.

What does Azure Confidential Ledger need to run?

SKILL.md names no scripts, command-line tools or credentials: Azure Confidential Ledger is instructions for the agent only. Compatibility (from SKILL.md): Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation..

Does Azure Confidential Ledger access the network?

SKILL.md names 2 domains. As links in the text: learn.microsoft.com and github.com. This is read from the text; nothing was executed.

Is Azure Confidential Ledger safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Azure Confidential Ledger use?

Azure Confidential Ledger is published under the CC-BY-4.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Azure Confidential Ledger use?

About 1.7k tokens (SKILL.md is roughly 6.7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Azure Confidential Ledger?

Skills that share tags, products or a category with Azure Confidential Ledger: Azsdk Common Live And Recorded Tests (Azure/azure-sdk-tools, 134 stars), Environment Deployment (microsoft/physical-ai-toolchain, 123 stars), Apex Azure Deploy (jonathan-vella/apex, 217 stars) and Azure Deploy (microsoft/GitHub-Copilot-for-Azure, 255 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Azure Confidential Ledger?

MicrosoftDocs (a GitHub organization, an official publisher) maintains it in MicrosoftDocs/Agent-Skills, which has 777 GitHub stars. The repository holds 147 skills in this directory. The repository was last updated on October 5, 2026.

Source: MicrosoftDocs/Agent-Skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.