CtrlK
BlogDocsLog inGet started
Tessl Logo

azure-deploy

Execute Azure deployments for ALREADY-PREPARED applications that have existing .azure/deployment-plan.md and infrastructure files. DO NOT use this skill when the user asks to CREATE a new application — use azure-prepare instead. This skill runs azd up, azd deploy, terraform apply, and az deployment commands with built-in error recovery. Requires .azure/deployment-plan.md from azure-prepare and validated status from azure-validate. WHEN: "run azd up", "run azd deploy", "execute deployment", "push to production", "push to cloud", "go live", "ship it", "bicep deploy", "terraform apply", "publish to Azure", "launch on Azure". DO NOT USE WHEN: "create and deploy", "build and deploy", "create a new app", "set up infrastructure", "create and deploy to Azure using Terraform" — use azure-prepare for these.

71

Quality

89%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Passed

No findings from the security scan

SKILL.md
Quality
Evals
Security

Quality

Content

77%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A well-structured deployment-orchestration skill: the 10-step workflow has genuine validation checkpoints and error-recovery routing, and all progressive-disclosure links resolve to real, purpose-labeled files. The main weakness is token efficiency — the prerequisite/validation warning is repeated across five separate blocks — and the body delegates all deploy commands to recipe files, leaving its own executable guidance thin.

Suggestions

Collapse the 'AUTHORITATIVE GUIDANCE', '⛔ STOP', Rules 1-2, and 'VALIDATION PROOF CHECK' blocks into one prerequisite-check section — the same validation requirement is currently stated five times, wasting context.

Include at least one representative deploy command per recipe type (e.g. `azd up --env <env>`) in the body so the execution step is actionable without first loading a recipe file.

Merge the trailing 'References' section into the existing steps/SDK tables — it re-lists troubleshooting.md and post-deployment.md links that already appear above.

DimensionReasoningScore

Conciseness

The steps table, rules, and reference listings are lean, but the opening prerequisite block pads heavily with repetition — the same requirement is restated in the 'AUTHORITATIVE GUIDANCE' blockquote, the '⛔ STOP' check, Rules 1-2, Step 1, and the 'VALIDATION PROOF CHECK' note ('DO NOT ASSUME', 'DO NOT SKIP', 'Skipping steps causes deployment failures'). The warning content could be stated once, so this sits at 'mostly efficient with some unnecessary explanation' rather than a lower score since the operational content itself is tight.

3 / 5

Actionability

Gives one concrete executable command ('run `azd provision --no-prompt`, then verify `AcrPull` role has propagated'), a precise steps table with file paths, a named MCP tool table with specific tool identifiers like `mcp_azure_mcp_azd` and `azure__role`, and an explicit URL-formatting rule. It falls short of fully executable because the core deploy execution is delegated to recipe READMEs rather than including even one representative deploy command inline.

4 / 5

Workflow Clarity

A 10-step table clearly sequences the workflow with explicit validation checkpoints (plan status = `Validated` with populated Validation Proof, mandatory pre-deploy checklist, RBAC health check, verify success with endpoint accessibility, live role verification), plus a dedicated error-recovery step routing to each recipe's `errors.md`. This matches the anchor for clear sequence with explicit validation steps and feedback loops for error recovery.

5 / 5

Progressive Disclosure

The body is a clean overview: every referenced path (pre-deploy-checklist.md, global-rules.md, recipes/README.md, recipes/azd/post-deployment.md, recipes/azd/verify.md, live-role-verification.md, all five sdk/ files, troubleshooting.md) exists on disk, links are one level deep and clearly labeled with purpose, and detailed content is properly split out. The deep-link anchor `#container-apps--acr--pre-deploy-rbac-health-check` resolves to a real heading in the checklist. Navigation is easy and well-signaled.

5 / 5

Total

17

/

20

Passed

Description

100%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

An exemplary description: it states concrete actions in third person, gives comprehensive natural trigger phrases, and actively disambiguates against the sibling azure-prepare skill with both positive and negative trigger lists. Its only minor cost is slight redundancy — prerequisites from azure-prepare/azure-validate are stated twice — but every clause is functional rather than padded.

DimensionReasoningScore

Specificity

Multiple specific concrete actions in third person ('runs azd up, azd deploy, terraform apply, and az deployment commands with built-in error recovery') with comprehensive coverage of the deployment toolchain. It stays at 5 rather than 4 because the actions span every infrastructure approach rather than having minor coverage gaps.

5 / 5

Completeness

Explicitly answers what ('Execute Azure deployments for ALREADY-PREPARED applications... runs azd up, azd deploy, terraform apply, and az deployment commands'), when (a WHEN list of nine concrete trigger phrases), and when-not (DO NOT USE WHEN list with redirects to azure-prepare), plus prerequisites. This exceeds the 5 anchor, which requires concrete trigger phrases for both what and when.

5 / 5

Trigger Term Quality

Comprehensive natural-phrase coverage with synonyms across registers: technical ('run azd up', 'bicep deploy', 'terraform apply'), colloquial ('push to production', 'go live', 'ship it', 'push to cloud'), and destination-oriented ('publish to Azure', 'launch on Azure'). All are phrases a user would naturally say, matching the 5 anchor's standard of comprehensive synonym coverage.

5 / 5

Distinctiveness Conflict Risk

A clear niche (deployment execution only, for already-prepared apps) with explicit disambiguation: 'DO NOT use this skill when the user asks to CREATE a new application — use azure-prepare instead' and negative triggers like 'create and deploy', 'build and deploy', 'set up infrastructure' routed to azure-prepare. The create-vs-deploy boundary is the exact overlap risk for this skill family and it is handled explicitly, so conflict risk is minimal.

5 / 5

Total

20

/

20

Passed

Validation

87%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 14 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

relative_links

Relative link issues: 10 deeper-than-1-level

Warning

referenced_paths_exist

Referenced path issues: 10 deeper-than-1-level

Warning

Total

14

/

16

Passed

Repository
microsoft/azure-skills
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.