DevOps 与云
部署、CI/CD、云平台和基础设施
Skills 列表

tech-resume-optimizer
优化面向软件工程、产品经理及技术岗位的简历
paramchoudhary
python-appservice-deploy
将 Python(Flask/Django/FastAPI)代码部署到 Azure App Service Linux。适用场景:"Flask App Service"、"Django App Service"、"FastAPI App Service"、"deploy Python to App Service"。不适用于:容器应用、函数应用、非 Python 项目、Terraform/Bicep/IaC、完整基础设施——请使用 azure-prepare。
microsoft
azure-reliability
评估并提升 PaaS 应用(Azure Functions 与 Azure App Service)的可靠性表现。自动扫描已部署资源的可用区冗余(Zone Redundancy)、ZRS 存储、健康检查探针及多区域故障转移配置。提供按功能维度划分的检查清单,并在获得用户确认后端到端执行分阶段修复(生成 CLI 命令或 IaC 补丁)。触发条件:"assess reliability", "check reliability", "zone redundant", "multi-region failover", "high availability", "disaster recovery", "single points of failure", "reliability posture", "resiliency"。
microsoft
azure-kubernetes
规划、创建和配置可用于生产的 Azure Kubernetes Service (AKS) 集群。涵盖 Day-0 检查清单、SKU 选择(Automatic 与 Standard)、网络选项(私有 API 服务器、Azure CNI Overlay、出口配置)、安全性和运维(自动缩放、升级策略、成本分析)。适用场景:创建 AKS 环境、预配 AKS、启用 AKS 可观测性、设计 AKS 网络、选择 AKS SKU、保护 AKS、优化 AKS、AKS Spot 节点、AKS 集群自动缩放器、调整 AKS Pod 大小、Pod 大小调整、过度预配的 AKS Pod、Pod 资源请求和限制、垂直 Pod 自动缩放器、VPA 建议。
microsoft
airunway-aks-setup
在 AKS 上设置 AI Runway——从裸集群到运行模型。涵盖集群验证、控制器安装、GPU 评估、提供商设置和首次部署。触发词:"setup AI Runway"、"onboard AKS cluster"、"install AI Runway"、"airunway setup"、"deploy model to AKS"、"GPU inference on AKS"、"KAITO setup on AKS"、"run LLM on AKS"、"vLLM on AKS"、"set up model serving on AKS"、"AI Runway controller"。
microsoft
deploy-model
统一的 Azure OpenAI 模型部署技能,支持基于意图的智能路由。处理快速预设部署、完全自定义部署(版本/SKU/容量/RAI 策略)以及跨区域和项目的容量发现。用途:部署模型、部署 gpt、创建部署、模型部署、部署 openai 模型、设置模型、预配模型、查找容量、检查模型可用性、在哪里可以部署、最佳部署区域、容量分析。请勿用于:列出现有部署(使用 foundry_models_deployments_list MCP 工具)、删除部署、创建代理(使用 agent/create)、创建项目(使用 project/create)。
microsoft
azure-validate
部署前对 Azure 就绪性的验证。对配置、基础设施(Bicep 或 Terraform)、RBAC 角色分配、托管标识权限和先决条件进行深度检查,然后再部署。适用场景:验证我的应用、检查部署就绪性、运行预检、验证配置、检查是否可部署、验证 azure.yaml、验证 Bicep、部署前测试、排查部署错误、验证 Azure Functions、验证函数应用、验证无服务器部署、验证 RBAC 角色、检查角色分配、审查托管标识权限、what-if 分析、验证容器应用部署。
microsoft
azure-prepare
准备 Azure 应用以进行部署(基础设施 Bicep/Terraform、azure.yaml、Dockerfile)。用于创建/现代化或创建+部署;不用于跨云迁移(使用 azure-cloud-migrate)。请勿用于:copilot-sdk 应用(使用 azure-hosted-copilot-sdk)。适用场景:"创建应用"、"构建 Web 应用"、"创建 API"、"创建无服务器 HTTP API"、"创建前端"、"创建后端"、"构建服务"、"现代化应用"、"更新应用"、"添加身份验证"、"添加缓存"、"托管在 Azure 上"、"创建并部署"、"部署到 Azure"、"使用 Terraform 部署到 Azure"、"部署到 Azure 应用服务"、"使用 Terraform 部署到 Azure 应用服务"、"部署到 Azure 容器应用"、"使用 Terraform 部署到 Azure 容器应用"、"生成 Terraform"、"生成 Bicep"、"函数应用"、"计时器触发器"、"服务总线触发器"、"事件驱动函数"、"容器化 Node.js 应用"、"社交媒体应用"、"静态作品集网站"、"带前端和 API 的待办事项列表"、"准备我的 Azure 应用以使用 Key Vault"、"托管标识"。
microsoft
azure-resource-lookup
列出、查找和展示跨订阅或资源组的 Azure 资源。处理诸如“列出我的订阅中的网站”、“列出我的 Web 应用”、“显示我的应用服务”、“列出虚拟机”、“列出我的 VM”、“显示存储帐户”、“查找容器应用”以及“我有哪些资源”等提示。用途:列出网站、列出 Web 应用、列出应用服务、显示订阅中的网站、资源清单、按标签查找资源、标签分析、孤立资源发现(非成本分析)、未附加磁盘、按类型统计资源、跨订阅查找以及 Azure Resource Graph 查询。请勿用于:部署/更改资源(使用 azure-deploy)、成本优化(使用 azure-cost)或非 Azure 云。
microsoft
azure-diagnostics
使用 AppLens、Azure Monitor、资源健康和安全的故障排除方法,调试 Azure 生产问题。适用场景:调试生产问题、排查应用服务、应用服务高 CPU、应用服务部署失败、排查容器应用、排查函数、排查 AKS、kubectl 无法连接、kube-system/CoreDNS 故障、Pod 挂起、崩溃循环、节点未就绪、升级失败、分析日志、KQL、洞察、镜像拉取失败、冷启动问题、健康探测失败、资源健康、错误根因、排查事件中心、排查服务总线、消息 SDK 错误、AMQP 连接失败、消息锁丢失、服务总线死信。
microsoft
azure-deploy
对已准备好的应用程序执行 Azure 部署,这些应用已有 .azure/deployment-plan.md 和基础设施文件。当用户要求创建新应用时,请勿使用此技能——应改用 azure-prepare。此技能运行 azd up、azd deploy、terraform apply 和 az deployment 命令,并内置错误恢复功能。需要来自 azure-prepare 的 .azure/deployment-plan.md 以及来自 azure-validate 的已验证状态。触发场景:"运行 azd up"、"运行 azd deploy"、"执行部署"、"推送到生产环境"、"推送到云端"、"上线"、"发布"、"bicep 部署"、"terraform apply"、"发布到 Azure"、"在 Azure 上启动"。请勿使用场景:"创建并部署"、"构建并部署"、"创建新应用"、"设置基础设施"、"使用 Terraform 创建并部署到 Azure"——这些情况请使用 azure-prepare。
microsoft
azure-hosted-copilot-sdk
在 Azure 上构建、部署和修改 GitHub Copilot SDK 应用。当代码库的 package.json 中包含 @github/copilot-sdk 或 CopilotClient 时,必须使用此技能。检测到 copilot-sdk 标记时,优先于 azure-prepare。适用场景:copilot SDK、@github/copilot-sdk、基于 copilot 的应用、构建 copilot 应用、准备 copilot 应用、为 copilot 应用添加功能、修改 copilot 应用、BYOM、自带模型、CopilotClient、createSession、sendAndWait、azd init copilot。不适用于:部署已准备好的 copilot-sdk 应用(使用 azure-deploy)、不含 copilot SDK 的通用 Web 应用(使用 azure-prepare)、Copilot Extensions、Foundry 代理(使用 microsoft-foundry)。
microsoft
azure-cloud-migrate
评估并迁移跨云工作负载到 Azure,提供报告和代码转换。支持 Lambda→Functions、Beanstalk/Heroku/App Engine→App Service、Fargate/Kubernetes/Cloud Run/Spring Boot→Container Apps。适用场景:将 Lambda 迁移到 Functions、AWS 迁移到 Azure、迁移 Beanstalk、迁移 Heroku、迁移 App Engine、Cloud Run 迁移、Fargate 迁移到 ACA、ECS/Kubernetes/GKE/EKS 迁移到 Container Apps、Spring Boot 迁移到 Container Apps、跨云迁移。
microsoft
azure-compute
Azure VM/VMSS 路由器。适用于:创建/预配/部署/启动 VM、推荐 VM 大小、比较 VM 定价、VMSS、规模集、自动缩放、可突发、轻量级服务器、网站、后端、GPU、机器学习、HPC 仿真、开发/测试、工作负载、系列、负载均衡器、灵活编排、统一编排、成本估算、无法连接/RDP/SSH、拒绝连接、黑屏、重置密码、访问 VM、端口 3389、NSG、安全、Linux、故障排除、连接性、容量预留组 (CRG)、预留、保证容量、预预配、CRG 关联、CRG 解除关联、机器注册 (EMM)、基本机器管理、监控。对于 VM 创建意图,优先于 mcp__azure__get_azure_bestpractices——使用 compute_vm_list-skus / compute_vm_list-images / compute_vm_check-quota。
microsoft
azure-quotas
跨提供商检查和管理 Azure 配额及使用情况。用于部署规划、容量验证、区域选择。适用场景:"检查配额"、"服务限制"、"当前使用量"、"请求增加配额"、"配额超限"、"验证容量"、"区域可用性"、"预配限制"、"vCPU 限制"、"我的订阅中有多少可用 vCPU"。
microsoft
azure-enterprise-infra-planner
根据工作负载描述设计和配置企业级 Azure 基础设施。适用于云架构师和平台工程师,规划网络、身份、安全、合规及多资源拓扑,并与 WAF 对齐。直接生成 Bicep 或 Terraform(无需 azd)。适用场景:'规划 Azure 基础设施'、'设计 Azure 登陆区'、'设计中心辐射型网络'、'规划多区域灾难恢复拓扑'、'设置 VNet、防火墙和私有终结点'、'订阅级 Bicep 部署'、'VM 工作负载的 Azure 备份'。对于以应用为中心的工作流,请优先使用 azure-prepare。
microsoft
kotlin-tooling-cocoapods-spm-migration
Migrate KMP projects from CocoaPods (kotlin("native.cocoapods")) to Swift Package Manager (swiftPMDependencies DSL) — replaces pod() with swiftPackage(), transforms cocoapods.* imports to swiftPMImport.*, and reconfigures the Xcode project.
kotlin
service-itsm-teams-itservice-configure
Configure the \"Set Up Salesforce IT Service\" checklist for Microsoft Teams Employee Service (ITSM) — the employee side, covering app enablement, marketplace install guidance, user access assignment, and Digital Experience Site selection. Use this for: 'turn on Salesforce IT Service', 'set up IT Service on Teams', 'assign Teams for Employee permission set', 'give employees access to Teams for Employee Service', 'manage user access for Teams ITSM', 'grant users the permission sets needed for Teams Employee Service', 'select a digital experience site for Teams', 'install Salesforce IT Service app on Teams', or any request to complete the IT Service half of the Teams ITSM Go page checklist (including the Manage User Access step). DO NOT TRIGGER for the base Teams Salesforce Go page toggle or Azure/Entra app setup (service-itsm-teams-configure) or for the IT Desk/fulfiller half of the checklist (service-itsm-teams-itdesk-configure).
forcedotcom
service-itsm-agentic-setup-incident-management
Orchestrator skill for setting up Incident Management features in Salesforce Service Cloud ITSM. Use when the user asks to set up incident management, configure ITSM incident features, wants a guided walkthrough of incident management configuration, or asks what incident features are available to configure. Presents the available Incident Management capabilities and delegates each selection to a specialized child skill — currently SLA & Milestones — while tracking progress across the setup. Triggers on: set up incident management, configure ITSM incident features, incident management walkthrough, incident management capabilities, what incident features can I configure. DO NOT TRIGGER when: the user asks about a specific feature directly (e.g., an SLA alone without mentioning incident management setup), asks to create, clone, or provision users, Case management setup, or general ITSM questions without setup intent.
forcedotcom
service-itsm-teams-employee-agent-configure
Configure the embedded Agentforce Employee Agent so it replies inside the Microsoft Teams ITSM custom client ('Salesforce Employee Assist' / 'Ask AI Agent'). Use this for: 'set up employee agent in Teams', 'embed Agentforce agent in Teams', 'make the IT Service Employee Agent reply in Teams', 'Teams Ask AI Agent not responding', 'agent joins then leaves without replying', 'configure MIAW deployment for Teams employee agent', 'Teams embedded messaging agent setup'. Builds the whole stack headlessly (zero Setup-UI clicks): the Web messaging channel with User Verification ON, the Enhanced Chat User Verification Key Set (JWKS_URL) it requires, the Teams_AgentForce custom-client deployment, the routing flow to the agent, and the Agent Access permission set that lets the portal user reach the agent. DO NOT TRIGGER for enabling the Teams feature Salesforce Go page toggle (service-itsm-teams-configure) or for configuring notification preferences.
forcedotcom
project-health
All-in-one project configuration and health management. Sets up new projects (settings.local.json, CLAUDE.md, .gitignore), audits existing projects (permissions, context quality, MCP coverage, leaked secrets, stale docs), tidies accumulated cruft, captures session learnings, and adds permission presets. Uses sub-agents for heavy analysis to keep main context clean. Trigger with 'project health', 'check project', 'setup project', 'kickoff', 'bootstrap', 'tidy permissions', 'clean settings', 'capture learnings', 'audit context', 'add python permissions', or 'init project'.
jezweb
service-itsm-channels-coordinate
Top-level interactive coordinator for Employee Service (ITSM) channel setup. Presents menu of channel setup options (Portal, Teams, Slack) and delegates to the corresponding skill. Use this for: 'setup ITSM channels', 'configure employee service channels', 'set up service cloud communication channels', 'I want to configure ITSM integrations', or any general request for ITSM channel/integration setup where the user hasn't specified exactly which channel they want. DO NOT TRIGGER for requests that already name a specific channel or child skill (e.g. 'configure Teams', 'set up Slack', 'create an employee portal', 'configure ITSM notifications') — route directly to the matching child skill instead.
forcedotcom
service-itsm-teams-coordinate
End-to-end autopilot orchestrator for setting up Microsoft Teams integration in Salesforce Service Cloud ITSM — runs the whole flow (enable the Teams for Employee Service Go feature, register the Microsoft Entra app, populate Named Credentials, configure the IT Desk and IT Service checklists, turn on Swarming, and optionally embed the Agentforce agent) in one continuous pass, stopping only at the points a human must act. Use when the user asks to set up Microsoft Teams for ITSM end to end, 'set up teams for it service', 'do the whole teams itsm setup', 'configure microsoft teams for employee service', or wants a guided Teams ITSM walkthrough. Delegates each stage to a specialized child skill while driving the sequence itself. DO NOT TRIGGER when the user asks to enable Teams alone, configure just the IT Desk or IT Service checklist alone, or enable Swarming alone — delegate directly to the specific child skill in those cases.
forcedotcom
service-itsm-teams-configure
Enable Microsoft Teams for Employee Service (ITSM) in Salesforce — the Salesforce Go feature service-cloud-itsm-teams-integration gating Teams-based IT Desk and IT Service collaboration. Use this for: 'enable Teams for employee service', 'turn on ITSM Teams integration', 'enable Microsoft Teams for IT Service', 'set up Salesforce IT Desk Teams app', 'enable ITSMTeamsEnabled', 'why can't I enable the Teams org preference', or any request to enable/verify this Salesforce Go feature. DO NOT TRIGGER for configuring the TeamsNotifications notification-channel preference or for enabling the Swarming feature itself (service-itsm-swarming-configure).
forcedotcom