azure-compliance

Audit Azure environments for compliance and security using azqr and Key Vault expiration checks.

Updated Apr 12, 2026
One-click install
npx skills add https://github.com/davidrrowley/CortexYouV3 --skill azure-compliance-davidrrowley
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: azure-compliance
Source: https://github.com/davidrrowley/CortexYouV3/tree/main/.agents/skills/azure-compliance
Command: npx skills add https://github.com/davidrrowley/CortexYouV3 --skill azure-compliance-davidrrowley

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

Azure governance and security teams need a reliable way to identify misconfigurations, policy gaps, and expiration risks across Azure subscriptions. This Skill automates compliance assessment using azqr, reviews resources, and highlights Key Vault expiration risks to prevent outages.

Core Features & Use Cases

  • Comprehensive Azure compliance scans using azqr across subscriptions, resource groups, and management groups to surface governance gaps
  • Key Vault expiration monitoring and security posture validation to preempt credential and certificate expiry events
  • Remediation guidance and governance reporting, including defender recommendations, policy non-compliance, and advisor outputs for leadership reviews

Quick Start

Log in to Azure, run a scope-based azqr compliance scan, and review Key Vault expiration findings to prioritize remediation.

Frequently Asked Questions about azure-compliance

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I audit Azure subscriptions for security and policy compliance?

Azure compliance audits use azqr to scan subscriptions, resource groups, and management groups for governance gaps and security posture issues. This automated assessment surfaces policy non-compliance and defender recommendations for remediation.

How can I monitor Key Vault expiration risks to prevent Azure outages?

Key Vault expiration monitoring checks credential and certificate expiry events across Azure subscriptions to preempt outages. It validates security posture and highlights expiration risks so teams can prioritize remediation before failures occur.

What do I need to run an azqr compliance scan on Azure resources?

Running azqr compliance scans requires Azure login credentials and subscription access. You need references to azqr outputs and Key Vault data to generate findings and remediation guidance across your target scope.

Does Azure compliance automation work across management groups and resource groups?

Azure compliance automation supports scope-based azqr scans across subscriptions, resource groups, and management groups. It targets best-practice assessments and resource reviews to surface governance gaps at any management hierarchy level.

What is the best way to generate Azure governance reports for leadership reviews?

Azure governance reporting combines azqr compliance findings, Key Vault expiration data, defender recommendations, and advisor outputs into remediation guidance. This provides leadership with actionable security posture and policy non-compliance insights.

Why does my Azure compliance scan only show partial policy findings?

Partial policy findings during Azure compliance scans occur when azqr lacks full subscription access or incomplete Key Vault data references. Ensure proper Azure login and complete scope permissions to surface all governance gaps and security posture issues.