Azure blueprints
Expert knowledge for Azure Blueprints development including troubleshooting, decision making, security, configuration, integrations & coding patterns, and deployment. Use when migrating off Blueprints, mapping to PBMM/ISO/SWIFT, automating via CLI/PowerShell/REST, or fixing deployment errors, and other Azure Blueprints related development tasks. Not for Azure Policy (use azure-policy), Azure Resource Manager (use azure-resource-manager), Azure Resource Graph (use azure-resource-graph), Azure Portal (use azure-portal).From its SKILL.md
npx -y skills add MicrosoftDocs/Agent-Skills --skill azure-blueprintsAssembled from the repository path, not quoted from the project. Check it against their README if it does not work.
One thing to look at
- fetches URLsInstructs the agent to fetch 8 URLs, including https://learn.microsoft.com/en-us/azure/governance/blueprints/troubleshoot/general and 7 more.
SKILL.md
7.9 KB, ~1.6k tokens by cl100k_base, as published. Nobody here has run it
Azure Blueprints Skill
This skill provides expert guidance for Azure Blueprints. Covers troubleshooting, decision making, security, configuration, integrations & coding patterns, and deployment. It combines local quick-reference content with remote documentation fetching capabilities.
How to Use This Skill
IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g.,
L35-L120), useread_filewith the specified lines. For categories with file links (e.g.,[security.md](security.md)), useread_fileon the linked reference file
IMPORTANT for Agent: If
metadata.generated_atis more than 3 months old, suggest the user pull the latest version from the repository. Ifmcp_microsoftdocstools are not available, suggest the user install it: Installation Guide
This skill requires network access to fetch documentation content:
- Preferred: Use
mcp_microsoftdocs:microsoft_docs_fetchwith query stringfrom=learn-agent-skill. Returns Markdown. - Fallback: Use
fetch_webpagewith query stringfrom=learn-agent-skill&accept=text/markdown. Returns Markdown.
Category Index
| Category | Lines | Description |
|---|---|---|
| Troubleshooting | L34-L38 | Diagnosing and fixing common Azure Blueprints deployment and assignment errors, including policy, role assignment, and resource lock issues, with step-by-step troubleshooting guidance. |
| Decision Making | L39-L44 | Guidance on Azure Blueprints retirement timelines, planning and executing migrations, and answers to common questions about moving off Blueprints. |
| Security | L45-L60 | Security-focused deployment stages, resource locks, operator roles, and using/mapping Azure Blueprints for compliance frameworks like PBMM, ISM PROTECTED, ISO 27001, SWIFT CSP, and UK OFFICIAL/NHS. |
| Configuration | L61-L72 | Configuring and deploying Azure Blueprints (including security/ISO/CAF/SWIFT samples), using blueprint functions, and importing/exporting blueprints via PowerShell. |
| Integrations & Coding Patterns | L73-L79 | Automating Azure Blueprints as code using CLI, PowerShell, and REST: create, import/export, and manage blueprint definitions and assignments programmatically. |
| Deployment | L80-L85 | Controlling blueprint artifact deployment order, migrating blueprints to template specs/deployment stacks, and deploying the CAF Foundation blueprint with parameters. |
Troubleshooting
| Topic | URL |
|---|---|
| Troubleshoot common Azure Blueprints errors | https://learn.microsoft.com/en-us/azure/governance/blueprints/troubleshoot/general |
Decision Making
| Topic | URL |
|---|---|
| Plan migration off Azure Blueprints with timelines | https://learn.microsoft.com/en-us/azure/governance/blueprints/blueprint-retirement |
| Answer migration questions for Blueprints retirement | https://learn.microsoft.com/en-us/azure/governance/blueprints/blueprint-retirement-faq |
Security
Configuration
Integrations & Coding Patterns
| Topic | URL |
|---|---|
| Create Azure Blueprints using Azure CLI commands | https://learn.microsoft.com/en-us/azure/governance/blueprints/create-blueprint-azurecli |
| Create Azure Blueprints via REST API requests | https://learn.microsoft.com/en-us/azure/governance/blueprints/create-blueprint-rest-api |
| Manage Azure Blueprint assignments with Az.Blueprint PowerShell | https://learn.microsoft.com/en-us/azure/governance/blueprints/how-to/manage-assignments-ps |
Deployment
| Topic | URL |
|---|---|
| Control Azure Blueprint artifact deployment order | https://learn.microsoft.com/en-us/azure/governance/blueprints/concepts/sequencing-order |
| Migrate Azure Blueprints to template specs and deployment stacks | https://learn.microsoft.com/en-us/azure/governance/blueprints/migrate-to-template-specs |
| Deploy CAF Foundation blueprint with parameters | https://learn.microsoft.com/en-us/azure/governance/blueprints/samples/caf-foundation/deploy |
What ships with it
Read from the repository
Just SKILL.md. No reference files, no scripts.
Gives 0 of the 12 instructions most containers cloud skills give in ~1.6k tokens
Counted across 607 of the 705 authors here whose files we hold, read 2026-09-06
- Run as non-root userin 34 of 607, across 27 files
- Use multi-stage buildsin 29 of 607
- Set resource requests and limitsin 24 of 607, across 20 files
- Configure liveness and readiness probesin 18 of 607, across 14 files
- Use named volumes for persistent datain 14 of 607, across 9 files
- Pin base image versionsin 14 of 607
- Set up environment variablesin 14 of 607, across 10 files
- Pin provider versionsin 14 of 607
- Apply least privilege RBAC permissionsin 10 of 607, across 7 files
- Create a dockerignore filein 10 of 607
- Use remote state with lockingin 9 of 607
- Pin base images by digestin 9 of 607, across 8 files
Said here and by no other author read
- Use the Category Index to locate relevant sections
- Use read_file for categories with line ranges
- Use read_file on linked reference files
- Suggest pulling latest version if metadata is old
- Suggest installing tools if they are missing
- Fetch documentation using network access
Grouped from the skills themselves: near-identical wordings counted once, and counted by distinct author, so one author publishing three of these counts once. Length counted with cl100k_base; the agent that loads this file may tokenize it differently.