azure-kubernetes-app-deploy
What this skill does
Deployment automation for Azure Kubernetes Service (AKS), including Dockerfile templates and GitHub Actions workflows for containerized application deployment.
github/microsoft - Secrets Management - 1.4k stars
Threat analysis
Skill info
pkg:github/microsoft/azure-skills@66cd927?skill=azure-kubernetes-app-deployAssessments (2)
Secrets Management
Secrets Management via local-llm-review
templates/github-actions/deploy.yml
The workflow uses OIDC federation with GitHub secrets (AZURE_CLIENT_ID, AZURE_TENANT_ID, AZURE_SUBSCRIPTION_ID), but the placeholder text in the comments suggests that the workflow may be missing explCode Quality
Code Quality via local-llm-review
templates/dockerfiles/node.Dockerfile
The Dockerfile contains a placeholder comment indicating that the user should replace `LATEST_STABLE_NODE` with a specific version. This is not a security risk, but it could lead to misconfiguration iBadge
Add the Anomity scan badge for azure-kubernetes-app-deploy to your README.
How Anomity governs this at runtime
Scan-time vetting tells you what a skill says it will do. Anomity's Endpoint Sensor sees what agents actually do: it discovers skills alongside every other AI artifact on the endpoint, and runtime governance can allow, deny, or log the tool calls a skill triggers. Policy violations route to your SIEM, Slack, email, or Jira, backed by a queryable 90-day audit trail.
Book a 30-minute demo to see your own skill inventory.
Methodology and disputes
Every skill is assessed by the Anomity Skill Intelligence engine against its public source; findings indicate risk patterns, not confirmed exploitation. Maintainer of azure-kubernetes-app-deploy? Report an issue or request a rescan.




