Skip to main content

azure-redteam-supplychain

Use this skill to assess Azure DevOps, CI/CD, and software-supply-chain security during a red team engagement. Finds workload identity federation (OIDC / federated credentials trusting GitHub Actions or Azure DevOps) with broad trust and Azure privilege, over-privileged pipeline service principals, deployment identities using static secrets instead of OIDC, container-registry admin users and risky ACR build tasks, Automation Accounts with privileged identities, and Logic App deployment automation. Trigger when assessing CI/CD security, GitHub Actions or Azure DevOps OIDC, workload identity federation, federated credentials, pipeline service principals, ACR tasks, automation runbooks, or deployment supply chain.

Zur Installation springen

Quellinformationen

Repository
Contoso-State/red-team-agent-orchestration
Letzte Quellaktivität
17. Juni 2026 um 15:15
Erkannte Sprache von SKILL.md
Englisch
Sterne
6
Forks
1

Installationsoptionen

Standardmäßig ist der Prompt ausgewählt, der zuerst die Quelle prüft. Sie können zu einem direkten Befehl wechseln oder eine lokale Kopie herunterladen.

Quelldateien prüfen

Lesen Sie SKILL.md und alle von SkillsMP angezeigten Begleitdateien, bevor Sie sich für eine Installation entscheiden.