What problem does it solve?
It helps teams find Azure security and compliance gaps before they become incidents by auditing best practices and identifying expiring or expired Key Vault items.
Core Features & Use Cases
- Azure best-practices compliance assessment (azqr): Runs Azure Quick Review to evaluate resources against recommended security, reliability, and governance patterns, producing prioritized findings and remediation guidance.
- Key Vault expiration monitoring: Detects expired or expiring keys, secrets, and certificates, including risky items with missing expiration dates, to prevent outages and rotation failures.
- Configuration validation & reporting: Reviews scan outputs and organizes results into actionable priority buckets (critical/high/medium/low), suitable for compliance reporting and security posture improvement.
Use case: Before a security review or release window, scan a subscription or resource group, then audit the Key Vault to surface expired certificates and secrets that could break authentication flows.
Quick Start
Run the azure-compliance skill to scan your Azure subscription and report the most critical azqr findings plus any Key Vault keys, secrets, and certificates that are expired or expiring soon.