agentic-security-assessment

Maps repository artifacts to Azure AI Security Baseline controls ASI01-ASIO10 and generates Markdown reports with Cedar diagrams.

Updated Apr 28, 2026
One-click install
npx skills add https://github.com/garrardkitchen/skills --skill agentic-security-assessment
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: agentic-security-assessment
Source: https://github.com/garrardkitchen/skills/tree/main/agentic-security-assessment
Command: npx skills add https://github.com/garrardkitchen/skills --skill agentic-security-assessment

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Assess Azure-hosted or Azure-integrated agentic AI repositories against the Azure Agentic AI Security Baseline (ASI01–ASI10) and cross-cutting OWASP lenses to identify where controls are addressed, partially addressed, or missing. This skill enables teams to generate a human-readable security assessment report, an executive snapshot, a Mermaid implementation diagram, and a remediation roadmap.

Core Features & Use Cases

  • Assess IaC and application code for evidence mapping to ASI01–ASI10, including identity, containment, and logging controls.
  • Cross-cut with OWASP Top Ten Web/API risks to surface material agentic vulnerabilities.
  • Produce a decision-ready report with executive snapshot, findings, diagrams, and implementation guidance.

Quick Start

Describe the target repository and scope, then run the skill to generate a structured ASI assessment report.

Frequently Asked Questions about agentic-security-assessment

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I assess Azure agentic AI security risks in my IaC and application code?

Assess Azure agentic AI security risks by mapping infrastructure-as-code and application/runtime code to Azure Agentic AI Security Baseline controls ASI01-ASI10, generating a Markdown report with evidence references and remediation guidance.

What is the Azure Agentic AI Security Baseline and how does it map to repository artifacts?

The Azure Agentic AI Security Baseline defines security controls ASI01-ASI10 for agentic systems. It maps repository artifacts to identify whether identity, containment, and logging controls are addressed, partially addressed, or missing.

How do I cross-cut agentic AI security assessments with OWASP Top 10 and API security risks?

Cross-cut agentic security assessments with OWASP Top Ten Web Security Risks 2025 and OWASP API Security Top 10 2023 by using them as analytical lenses to surface material vulnerabilities across both IaC and application code.

Can I generate a visual security posture diagram for Azure agentic AI repositories?

Generate a visual security posture diagram by producing a colorized Mermaid implementation diagram that illustrates the ASI01-ASI10 control statuses and evidence mapping for the target Azure agentic AI repository.

Does this security assessment produce reports suitable for executive review?

This security assessment produces an executive snapshot alongside a detailed remediation table, delivering decision-ready findings with per-ASI statuses and actionable guidance in a human-readable Markdown report.

What do I need to run an ASI01-ASI10 security assessment on my Azure repository?

Running an ASI01-ASI10 security assessment requires describing the target Azure-hosted or Azure-integrated repository and defining the scope, then executing the assessment to map IaC and runtime code evidence to baseline controls.