What problem does it solve? Azure environments drift from best practices over time, leaving misconfigured resources, orphaned assets, and expiring Key Vault secrets that cause outages or security exposure. This Skill automates compliance scanning and expiration auditing so issues are found before they cause incidents. ## Core Features & Use Cases - Comprehensive Compliance Scans: Runs Azure Quick Review (azqr) across subscriptions or resource groups and analyzes recommendations from APRL, Advisor, Defender for Cloud, and Azure Policy. - Key Vault Expiration Auditing: Lists keys, secrets, and certificates, then classifies them as expired, expiring soon, or missing expiration dates with prioritized remediation guidance. - Remediation Guidance: Maps findings to severity levels and provides Azure CLI and Bicep fix templates for common issues like missing private endpoints, soft delete, and diagnostic settings. - Use Case: Before a quarterly security review, run an azqr scan on your production subscription, audit all Key Vaults for certificates expiring within 30 days, and receive a prioritized remediation report. ## Quick Start Ask the agent to run a compliance scan on your Azure subscription and check your Key Vault for any secrets or certificates expiring in the next 30 days.