TechAICloudPolicy

Manage cloud governance policies across AWS, Azure, and GCP.

1|Updated Feb 6, 2026
One-click install
npx skills add https://github.com/pagopa/cloud-strategy.github --skill techaicloudpolicy
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: TechAICloudPolicy
Source: https://github.com/pagopa/cloud-strategy.github/tree/main/.github/skills/tech-ai-cloud-policy
Command: npx skills add https://github.com/pagopa/cloud-strategy.github --skill techaicloudpolicy

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill helps manage and enforce cloud governance policies across AWS, Azure, and GCP, ensuring compliance and security.

Core Features & Use Cases

  • Policy Creation/Modification: Define or update governance policies like AWS SCP, Azure Policy, and GCP Org Policy.
  • Scope Management: Apply policies at various levels (organization, folder, subscription, project).
  • Use Case: You need to ensure all new S3 buckets in your AWS environment are encrypted. This skill can help you create or modify an AWS SCP to enforce encryption at rest.

Quick Start

Use the TechAICloudPolicy skill to create an AWS SCP that denies unapproved regions.

Frequently Asked Questions about TechAICloudPolicy

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I create an AWS SCP to enforce encryption on new S3 buckets?

You can create or modify an AWS Service Control Policy to enforce encryption at rest for new S3 buckets. The skill manages policy definitions, scoping them to specific organizational units to ensure compliance and security across your environment.

What is the best way to manage cloud governance policies across multiple providers?

Managing cloud governance policies across multiple providers involves normalizing policy structures for AWS SCP, Azure Policy, and GCP Org Policy. This ensures consistent compliance enforcement and safe rollout across different cloud environments.

Can I apply Azure Policy at different scoping levels like subscriptions and projects?

Yes, you can apply Azure Policy at various scopes including management groups and subscriptions. The skill facilitates scoping governance policies to specific levels, adhering to best practices for conditions, effects, and exemptions.

Does this support GCP Organization Policy creation and modification?

Yes, it supports the creation and modification of GCP Organization Policies. You can define or update governance policies, applying them at the organization or folder level to manage compliance across your Google Cloud environment.

How do I deny unapproved regions using an AWS Service Control Policy?

To deny unapproved regions, you can use this skill to create an AWS SCP that restricts resource provisioning to approved locations. It helps manage policy definitions and enforcement, ensuring compliance with regional governance requirements.

Are there limitations when normalizing policy structures across AWS, Azure, and GCP?

While normalizing policy structures across AWS, Azure, and GCP provides consistent review and safe rollout, limitations may arise from provider-specific conditions, effects, and exemptions. Adhering to best practices for each platform's scope is necessary.