一键导入
nerf-az-storage
Azure Storage Account inspection tools (network rules, public access, private endpoints)
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Azure Storage Account inspection tools (network rules, public access, private endpoints)
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Safe wrappers for common Unix utilities
Safe wrappers for common Unix utilities
Allow nerf tools without prompting (supports glob patterns like nerf-git-*)
Allow/deny nerf tools by threat profile (read/write ceiling)
Deny nerf tools entirely (supports glob patterns like nerf-git-*)
List nerf tool permissions across all scopes
| name | nerf-az-storage |
| description | Azure Storage Account inspection tools (network rules, public access, private endpoints) |
| targets | ["*"] |
These tools are available as scripts within this plugin. Call them using the absolute paths shown in each usage line.
Tools for inspecting storage account configuration. az-storage-account-show reports network rules, allowBlobPublicAccess, and private endpoint connections. Useful for auditing tfstate accounts and verifying public access is appropriately restricted. All tools accept --subscription to target a specific subscription.
List storage accounts (optionally filtered by resource group).
Usage: ${CLAUDE_PLUGIN_ROOT}/skills/nerf-az-storage/scripts/nerf-az-storage-account-list [--resource-group|-g <resource_group>] [--subscription <subscription>]
Maps to: az storage account list <resource_group> <subscription> --output json
Options:
--resource-group|-g (optional): Filter to a specific resource group--subscription (optional): Subscription name or ID (defaults to active)Show storage account details (network rules, public access, private endpoints).
Usage: ${CLAUDE_PLUGIN_ROOT}/skills/nerf-az-storage/scripts/nerf-az-storage-account-show --resource-group|-g <resource_group> [--subscription <subscription>] <name>
Maps to: az storage account show --resource-group <resource_group> --name <name> <subscription> --output json
Options:
--resource-group|-g (required): Resource group containing the storage account--subscription (optional): Subscription name or ID (defaults to active)Arguments:
<name> (required): Storage account nameList explicit network rules on a storage account.
Usage: ${CLAUDE_PLUGIN_ROOT}/skills/nerf-az-storage/scripts/nerf-az-storage-account-network-rule-list --resource-group|-g <resource_group> [--subscription <subscription>] <account_name>
Maps to: az storage account network-rule list --resource-group <resource_group> --account-name <account_name> <subscription> --output json
Options:
--resource-group|-g (required): Resource group containing the storage account--subscription (optional): Subscription name or ID (defaults to active)Arguments:
<account_name> (required): Storage account nameHit a bug, complaint, bypass-worthy guardrail, or want a feature? Use the nerf-report skill.