Official agent skill

Azure Private Link

by MicrosoftDocs in MicrosoftDocs/Agent-Skills

Expert knowledge for Azure Private Link development including best practices, decision making, architecture & design patterns, limits & quotas, security, and configuration.

OfficialCC-BY-4.0Auto-check passedDevelopment

Install Azure Private Link

skills CLI
$ npx skills add MicrosoftDocs/Agent-Skills --skill azure-private-link -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install MicrosoftDocs/Agent-Skills azure-private-link --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/MicrosoftDocs/Agent-Skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/azure-private-link .claude/skills/azure-private-link && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
azure-private-link
GitHub stars
775
Token cost
~2k tokens
SKILL.md length
573 words
Files
1
Skills in repo
149
Repo updated
First seen
Licence
CC-BY-4.0

At a glance

Expert knowledge for Azure Private Link development including best practices, decision making, architecture & design patterns, limits & quotas, security, and configuration.

  • Configuring Private Endpoints
  • SKILL.md covers How to Use This Skill and Category Index
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Network Security Perimeters

What it does

Azure Private Link is an agent skill from MicrosoftDocs/Agent-Skills, published by the product's own GitHub organization. Expert knowledge for Azure Private Link development including best practices, decision making, architecture & design patterns, limits & quotas, security, and configuration. Use when configuring Private Endpoints, DNS, NSGs/Firewall, Network Security Perimeters, or Azure Private Resolver, and other Azure Private Link related development tasks. Not for Azure Virtual Network (use azure-virtual-network), Azure Virtual Network Manager (use azure-virtual-network-manager), Azure VPN Gateway (use azure-vpn-gateway)…

Its SKILL.md is about 2k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts. Compatibility notes: Requires network access. Uses mcpmicrosoftdocs:microsoftdocsfetch or fetchwebpage to retrieve documentation.

It sits in Development, covering Design patterns, Network security and GraphQL. It works with Microsoft Azure. The repository describes itself as: Curated Agent Skills for Microsoft & Azure – giving AI coding assistants structured, real-time expertise from Microsoft Learn docs. The licence is CC-BY-4.0.

When your agent uses it

  • Configuring Private Endpoints
  • Network Security Perimeters
  • Azure Private Resolver
  • Other Azure Private Link related development tasks

Example prompts

  • “/azure-private-link”

Requirements

  • Compatibility (from SKILL.md): Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.

What it can do on your machine

Read from SKILL.md and the folder at commit ba74e8f. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • learn.microsoft.com
    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.

    From compatibility in the SKILL.md frontmatter.

Context cost

Azure Private Link loads about 2k tokens when it runs. Until then it costs about 144 tokens; SKILL.md has 573 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~144
When it runs · the whole SKILL.md, loaded when a task matches
~2k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from MicrosoftDocs/Agent-Skills at commit ba74e8f, republished under its CC-BY-4.0 licence (© MicrosoftDocs). 573 words, ~2,029 tokens.

Download SKILL.mdSave it as .claude/skills/azure-private-link/SKILL.md (or your agent's skills folder).
name
azure-private-link
description
Expert knowledge for Azure Private Link development including best practices, decision making, architecture & design patterns, limits & quotas, security, and configuration. Use when configuring Private Endpoints, DNS, NSGs/Firewall, Network Security Perimeters, or Azure Private Resolver, and other Azure Private Link related development tasks. Not for Azure Virtual Network (use azure-virtual-network), Azure Virtual Network Manager (use azure-virtual-network-manager), Azure VPN Gateway (use azure-vpn-gateway), Azure ExpressRoute (use azure-expressroute).
compatibility
Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.
metadata.generated_at
2026-10-04
metadata.generator
docs2skills/1.0.0

This skill provides expert guidance for Azure Private Link. Covers best practices, decision making, architecture & design patterns, limits & quotas, security, and configuration. It combines local quick-reference content with remote documentation fetching capabilities.

How to Use This Skill

IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g., L35-L120), use read_file with the specified lines. For categories with file links (e.g., [security.md](security.md)), use read_file on the linked reference file

IMPORTANT for Agent: If metadata.generated_at is more than 3 months old, suggest the user pull the latest version from the repository. If mcp_microsoftdocs tools are not available, suggest the user install it: Installation Guide

This skill requires network access to fetch documentation content:

  • Preferred: Use mcp_microsoftdocs:microsoft_docs_fetch with query string from=learn-agent-skill. Returns Markdown.
  • Fallback: Use fetch_webpage with query string from=learn-agent-skill&accept=text/markdown. Returns Markdown.

Category Index

CategoryLinesDescription
Best PracticesL34-L38DNS design and configuration guidance for private endpoints, including zone setup, name resolution patterns, split-horizon DNS, and avoiding common DNS misconfigurations with Private Link
Decision MakingL39-L44Guidance on choosing perimeter access modes and designing Azure Private Link setups, focusing on security tradeoffs, cost optimization, and migration/transition considerations.
Architecture & Design PatternsL45-L49Designing DNS architectures for Private Endpoints using Azure Private Resolver, including name resolution patterns, forwarding rules, and integration with on-premises or hybrid networks
Limits & QuotasL50-L56Limits, quotas, and behaviors for Private Link/Endpoints, how to check service availability per resource, and how to request increases to VNet Private Endpoint limits.
SecurityL57-L64RBAC setup for Private Link and Network Security Perimeters, security best practices, and inspecting/controlling Private Endpoint traffic with Azure Firewall.
ConfigurationL65-L85Configuring Azure Private Link, endpoints, and Network Security Perimeters: setup via CLI/portal/PowerShell/Terraform, DNS, SNAT, IPv6, policies, cross-perimeter links, monitoring, and diagnostics.
Best Practices
TopicURL
Apply DNS integration best practices for Azure Private Endpointshttps://learn.microsoft.com/en-us/azure/private-link/private-endpoint-dns-integration
Decision Making
TopicURL
Choose and transition Azure network security perimeter access modeshttps://learn.microsoft.com/en-us/azure/private-link/network-security-perimeter-transition
Optimize Azure Private Link design for cost and securityhttps://learn.microsoft.com/en-us/azure/private-link/private-link-cost-optimization
Architecture & Design Patterns
TopicURL
Design DNS infrastructure for Private Endpoints with Azure Private Resolverhttps://learn.microsoft.com/en-us/azure/private-link/tutorial-dns-on-premises-private-resolver
Show full SKILL.md (223 more words)Show less
Limits & Quotas
TopicURL
Check Azure Private Link service availability by resourcehttps://learn.microsoft.com/en-us/azure/private-link/availability
Increase Azure Private Endpoint VNet limitshttps://learn.microsoft.com/en-us/azure/private-link/increase-private-endpoint-vnet-limits
Azure Private Link limits, behaviors, and FAQshttps://learn.microsoft.com/en-us/azure/private-link/private-link-faq
Security
TopicURL
Configure RBAC permissions for Azure Network Security Perimeter operationshttps://learn.microsoft.com/en-us/azure/private-link/network-security-perimeter-role-based-access-control-requirements
Configure RBAC permissions for Azure Private Linkhttps://learn.microsoft.com/en-us/azure/private-link/rbac-permissions
Apply security best practices to Azure Private Linkhttps://learn.microsoft.com/en-us/azure/private-link/secure-private-link
Inspect and control Private Endpoint traffic using Azure Firewallhttps://learn.microsoft.com/en-us/azure/private-link/tutorial-inspect-traffic-azure-firewall
Configuration
TopicURL
Configure service tag access in Azure Network Security Perimeterhttps://learn.microsoft.com/en-us/azure/private-link/configure-network-security-perimeter-service-tag
Configure cross-perimeter links for Azure NSPshttps://learn.microsoft.com/en-us/azure/private-link/configure-perimeter-link
Configure Azure Private Link service Direct Connecthttps://learn.microsoft.com/en-us/azure/private-link/configure-private-link-service-direct-connect
Configure standard service endpoints using Azure CLIhttps://learn.microsoft.com/en-us/azure/private-link/configure-service-endpoint-standard-cli
Configure standard service endpoints in Azure portalhttps://learn.microsoft.com/en-us/azure/private-link/configure-service-endpoint-standard-portal
Configure standard service endpoints with PowerShellhttps://learn.microsoft.com/en-us/azure/private-link/configure-service-endpoint-standard-powershell
Configure Azure Private Link service endpoint with Terraformhttps://learn.microsoft.com/en-us/azure/private-link/configure-service-endpoint-standard-terraform
Create and manage network security perimeters with Azure CLIhttps://learn.microsoft.com/en-us/azure/private-link/create-network-security-perimeter-cli
Create and manage a network security perimeter in portalhttps://learn.microsoft.com/en-us/azure/private-link/create-network-security-perimeter-portal
Configure subnet network policies for private endpointshttps://learn.microsoft.com/en-us/azure/private-link/disable-private-endpoint-network-policy
Configure privateLinkServiceNetworkPolicies for Private Linkhttps://learn.microsoft.com/en-us/azure/private-link/disable-private-link-service-network-policy
Configure and manage Azure Private Endpoint propertieshttps://learn.microsoft.com/en-us/azure/private-link/manage-private-endpoint
Reference for Azure Private Link monitoring datahttps://learn.microsoft.com/en-us/azure/private-link/monitor-private-link-reference
Enable and store Network Security Perimeter diagnostic logshttps://learn.microsoft.com/en-us/azure/private-link/network-security-perimeter-diagnostic-logs
Configure and use Azure Network Security Perimeter metricshttps://learn.microsoft.com/en-us/azure/private-link/network-security-perimeter-metrics
Configure DNS zones for Azure Private Endpointshttps://learn.microsoft.com/en-us/azure/private-link/private-endpoint-dns
Configure SNAT bypass tags for Private Endpoint traffic via NVAhttps://learn.microsoft.com/en-us/azure/private-link/private-link-disable-snat
Configure Azure Private Link over IPv6 connectivityhttps://learn.microsoft.com/en-us/azure/private-link/private-link-ipv6

© MicrosoftDocs, CC-BY-4.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/azure-private-link of MicrosoftDocs/Agent-Skills.

Open the folder on GitHubat commit ba74e8f

Compare with similar skills

Azure Private Link next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Azure Private Link compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Azure Private Link this skillMicrosoftDocs/Agent-Skills775—~2kAutomated safety check: PassCC-BY-4.0
Senior Fullstackdavila7/claude-code-templates32k6 repos~1.1kAutomated safety check: NotesMIT
Moai Ref API Patternsmodu-ai/moai-adk1.2k—~1.9kAutomated safety check: PassApache-2.0
API Design Principlesjh941213/my-cc-harness12619 repos~3.4kAutomated safety check: PassNone
API Contract Designrsmdt/the-startup536—~1.1kAutomated safety check: PassMIT
Azure Firewallvinayaklatthe/microsoft-security-skills175—~1.7kAutomated safety check: PassMIT

Similar skills

  • Senior Fullstack

    davila7/claude-code-templates

    Comprehensive fullstack development skill for building complete web applications with React, Next.js, Node.js, GraphQL, and PostgreSQL.

    32k GitHub starsUsed in 6 repos~1.1k tokens
    DevelopmentAuto-check: notes
  • Moai Ref API Patterns

    modu-ai/moai-adk

    REST/GraphQL API design patterns, error handling conventions, and input validation reference for backend development.

    1.2k GitHub stars~1.9k tokensUpdated today
    Backend & APIsAuto-check passed
  • API Design Principles

    jh941213/my-cc-harness

    REST 및 GraphQL API 설계 원칙 가이드. An agent skill from jh941213/my-cc-harness.

    126 GitHub starsUsed in 19 repos~3.4k tokens
    Backend & APIsAuto-check passed
  • API Contract Design

    rsmdt/the-startup

    REST and GraphQL API design patterns, OpenAPI/Swagger specifications, versioning strategies, and authentication patterns.

    536 GitHub stars~1.1k tokensUpdated 2 mo ago
    Backend & APIsAuto-check passed
  • Azure Firewall

    vinayaklatthe/microsoft-security-skills

    Guidance for Azure Firewall — managed cloud-native L3-L7 stateful network firewall for centralised egress, east-west, and ingress control.

    175 GitHub stars~1.7k tokensUpdated 3 mo ago
    SecurityAuto-check passed
  • Azure Network Security Design

    vinayaklatthe/microsoft-security-skills

    Guidance for designing secure Azure network architecture — hub-spoke topology (or Virtual WAN), segmentation with NSGs/ASGs, private endpoints / Private Link for PaaS, egress through Azure Firewall…

    175 GitHub stars~1.8k tokensUpdated 3 mo ago
    SecurityAuto-check passed

More from MicrosoftDocs/Agent-Skills

All 149 skills in this repo
  • Azure Personalizer

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure AI Personalizer development including troubleshooting, decision making, security, configuration, and integrations & coding patterns.

    775 GitHub starsUsed in 1 repo~1.1k tokens
    Auto-check passed
  • Azure Architecture Advisor

    MicrosoftDocs/Agent-Skills

    Official

    Guides Azure solution design by category, from reference architectures and design patterns to technology choices and migrations, fetching current Microsoft Learn pages over the network.

    775 GitHub stars~15k tokensUpdated yesterday
    Auto-check passed
  • Azure Advisor Guidance

    MicrosoftDocs/Agent-Skills

    Official

    Reference guidance for Azure Advisor work: recommendations, alerts and digests, workbooks, RBAC access and sovereign-cloud limits, fetched from Microsoft Learn.

    775 GitHub stars~1.7k tokensUpdated yesterday
    Auto-check passed
  • Azure AI Vision Reference

    MicrosoftDocs/Agent-Skills

    Official

    Looks up Microsoft Learn guidance for Azure AI Vision: Image Analysis, Read OCR containers, smart-crop thumbnails, background removal and video frame analysis, plus limits and deployment.

    775 GitHub stars~1.6k tokensUpdated yesterday
    Auto-check passed
  • Azure Analysis Services

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure Analysis Services development including troubleshooting.

    775 GitHub stars~608 tokensUpdated yesterday
    Auto-check passed
  • Azure Anomaly Detector

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure AI Anomaly Detector development including troubleshooting, best practices, limits & quotas, configuration, and deployment.

    775 GitHub stars~1.1k tokensUpdated yesterday
    Auto-check passed

Works with

Categories

Questions about Azure Private Link

What does Azure Private Link do?

Expert knowledge for Azure Private Link development including best practices, decision making, architecture & design patterns, limits & quotas, security, and configuration. Azure Private Link is an agent skill from MicrosoftDocs/Agent-Skills, published by the product's own GitHub organization. Expert knowledge for Azure Private Link development including best practices, decision making, architecture & design patterns, limits & quotas, security, and configuration.

When should I use Azure Private Link?

Azure Private Link fits situations like: configuring Private Endpoints; network Security Perimeters; azure Private Resolver; other Azure Private Link related development tasks.

How do I install Azure Private Link in Claude Code?

Run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-private-link -a claude-code`. Or copy the skill folder (skills/azure-private-link in MicrosoftDocs/Agent-Skills) into .claude/skills/azure-private-link in your project. Claude Code loads it when a task matches its description.

How do I install Azure Private Link in Codex?

Run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-private-link -a codex`. Or copy the skill folder (skills/azure-private-link in MicrosoftDocs/Agent-Skills) into .agents/skills/azure-private-link in your project. Codex loads it when a task matches its description.

Can I use Azure Private Link in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-private-link -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/azure-private-link, .gemini/skills/azure-private-link, .github/skills/azure-private-link and .opencode/skills/azure-private-link in your project.

What does Azure Private Link need to run?

SKILL.md names no scripts, command-line tools or credentials: Azure Private Link is instructions for the agent only. Compatibility (from SKILL.md): Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation..

Does Azure Private Link access the network?

SKILL.md names 2 domains. As links in the text: learn.microsoft.com and github.com. This is read from the text; nothing was executed.

Is Azure Private Link safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Azure Private Link use?

Azure Private Link is published under the CC-BY-4.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Azure Private Link use?

About 2k tokens (SKILL.md is roughly 8.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Azure Private Link?

Skills that share tags, products or a category with Azure Private Link: Senior Fullstack (davila7/claude-code-templates, 32k stars), Moai Ref API Patterns (modu-ai/moai-adk, 1.2k stars), API Design Principles (jh941213/my-cc-harness, 126 stars) and API Contract Design (rsmdt/the-startup, 536 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Azure Private Link?

MicrosoftDocs (a GitHub organization, an official publisher) maintains it in MicrosoftDocs/Agent-Skills, which has 775 GitHub stars. The repository holds 149 skills in this directory. The repository was last updated on October 5, 2026.

Source: MicrosoftDocs/Agent-Skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.