No security issues detected in microsoft/azure-skills/azure-hosted-copilot-sdk.
Claims to do
GitHub Copilot SDK on Azure: > ⚠️ **CRITICAL: This check MUST run before ANY other skill (azure-prepare, azure-deploy, etc.) when an existing codebase is present.**
Actually does
This skill reads `package.json` and source files (`.ts`, `.js`) to detect markers for GitHub Copilot SDK. If detected, it orchestrates the deployment of Copilot SDK applications to Azure, potentially scaffolding new projects using `azd init` with a specific template (`azure-samples/copilot-sdk-service`), configuring model access, and then invoking `azure-prepare`, `azure-validate`, and `azure-deploy` skills. It also checks for Docker.
[](https://mondoo.com/ai-agent-security/skills/github/microsoft/azure-skills/azure-hosted-copilot-sdk)<a href="https://mondoo.com/ai-agent-security/skills/github/microsoft/azure-skills/azure-hosted-copilot-sdk"><img src="https://mondoo.com/ai-agent-security/api/badge/github/microsoft/azure-skills/azure-hosted-copilot-sdk.svg" alt="Mondoo Skill Check" /></a>https://mondoo.com/ai-agent-security/api/badge/github/microsoft/azure-skills/azure-hosted-copilot-sdk.svgSkills can read files, run commands, and access credentials. Mondoo helps organizations manage the security risks of AI agent skills across their entire fleet.