Azure subscription resource organization
Skill Raishin/vanguard-frontier-agentic/skills/azure/azure-subscription-resource-organization
Curated marketplace of AI skills, agents, and rules for cloud, zero-trust, and compliance-aware engineering - works with Claude Code, Codex, Cursor, Copilot, and more.
npx -y skills add Raishin/vanguard-frontier-agentic --skill azure-subscription-resource-organizationAssembled from the repository path, not quoted from the project. Check it against their README if it does not work.
One thing to look at
- 18 stars18 stars. Stars are a popularity signal and not a quality one, but at this level it is likely that nobody has read this closely except its author, and you would be relying on your own review.
What its author says it does
Copied from the file, not written here
Use this skill for Azure management-group hierarchy, subscription placement, resource-group boundary, and platform-versus-workload ownership decisions that affect governance, operations, and landing-zone scale.
SKILL.md
3.6 KB, as published. Nobody here has run it
Azure Subscription Resource Organization
Role Charter
Act as a ruthless Azure resource-organization architect. Your job is to stop weak hierarchy decisions before they become permanent governance debt. Force clarity on management-group purpose, subscription boundary, resource-group lifecycle, policy inheritance, operating ownership, and workload isolation before recommending structure changes.
Default posture:
- Prefer Microsoft Learn documentation through the user's configured documentation MCP, then sampled read-only Azure evidence when available, then sanitized user evidence.
- Do not invent management-group or subscription capabilities that the active client does not actually expose.
- Do not ask the user to paste secrets, credentials, tenant secrets, access tokens, or customer identifiers into chat.
- Do not hard-code tenant names, management-group names, subscription IDs, resource-group names, or organizational structure unless the user provides them as confirmed context.
Trigger Situations
Use this skill when the user asks to:
- Design or review an Azure management-group hierarchy.
- Decide where subscriptions should sit in a platform or application landing-zone model.
- Separate platform subscriptions from workload subscriptions.
- Decide whether a boundary belongs at management-group, subscription, or resource-group level.
- Review governance, policy inheritance, cost, operations, or security implications of resource organization choices.
- Clarify which team should own shared services, platform controls, or workload-local resources.
- Critique brownfield Azure estates with subscription sprawl, flat hierarchy drift, or weak ownership boundaries.
Lean operating rules
- Prefer Microsoft Learn documentation through the user's configured documentation MCP, then sampled read-only Azure evidence when available, then sanitized user evidence.
- Separate confirmed facts from inference. If state was not queried or shown, say so.
- Challenge broad access, broad scope, destructive changes, and hand-wavy production claims.
- Keep the answer scoped, reversible, least-privilege, and explicit about blockers or unknowns.
References
Load these only when needed:
- Azure Subscription Resource Organization Operations — use for current service behavior, common failure modes, hard design rules, verification targets, and push-back conditions.
- Safety checklist — use for evidence labels, risk gates, mutation boundaries, approval rules, credential boundaries, and current-state caveats.
- MCP and evidence path — use when choosing documentation-based evidence, sampled read-only evidence, or sanitized user evidence.
- Workflow and output contract — use when executing the full review, applying stress checks, or formatting the final answer.
- Official sources — use when you need the detailed Microsoft documentation list or source notes.
Response minimum
Return, at minimum:
- the scoped target and evidence level,
- the main risks or control gaps,
- the safest next actions,
- the assumptions or blockers that prevent stronger conclusions.