Catalog
MicrosoftDocs/azure-artifact-signing

MicrosoftDocs

azure-artifact-signing

Expert knowledge for Azure Artifact Signing development including best practices, decision making, security, configuration, and integrations & coding patterns. Use when managing signing cert lifecycle, RBAC roles, DGSSv2 migration, diagnostic logs, or CI/CD signing integrations, and other Azure Artifact Signing related development tasks. Not for Azure Key Vault (use azure-key-vault), Azure Artifacts (use azure-artifacts), Azure Information Protection (use azure-information-protection).

globalRequires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.
generated_at:2026-05-24
generator:docs2skills/1.0.0
New~1.1k
v1.0Saved Jun 26, 2026

Azure Artifact Signing Skill

This skill provides expert guidance for Azure Artifact Signing. Covers best practices, decision making, security, configuration, and integrations & coding patterns. It combines local quick-reference content with remote documentation fetching capabilities.

How to Use This Skill

IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g., L35-L120), use read_file with the specified lines. For categories with file links (e.g., [security.md](security.md)), use read_file on the linked reference file

IMPORTANT for Agent: If metadata.generated_at is more than 3 months old, suggest the user pull the latest version from the repository. If mcp_microsoftdocs tools are not available, suggest the user install it: Installation Guide

This skill requires network access to fetch documentation content:

  • Preferred: Use mcp_microsoftdocs:microsoft_docs_fetch with query string from=learn-agent-skill. Returns Markdown.
  • Fallback: Use fetch_webpage with query string from=learn-agent-skill&accept=text/markdown. Returns Markdown.

Category Index

Category Lines Description
Best Practices L33-L37 Guidance on managing signing certificates end-to-end: rotation, renewal, expiration handling, key protection, and lifecycle policies for Azure Artifact Signing.
Decision Making L38-L43 Pricing and SKU selection for Azure Artifact Signing and guidance to migrate from DGSSv2, including plan changes and transition steps.
Security L44-L51 RBAC roles, identities, and validations for secure Artifact Signing, plus how to sign Windows code integrity policies and assign access permissions.
Configuration L52-L56 Configuring diagnostic settings for Artifact Signing, enabling and routing logs to destinations like Log Analytics, Storage, and Event Hubs for monitoring and analysis.
Integrations & Coding Patterns L57-L60 Configuring Artifact Signing with supported tools and workflows (e.g., CI/CD systems, package managers), including setup steps and patterns for integrating signing into build and release pipelines.

Best Practices

Topic URL
Apply certificate lifecycle practices in Artifact Signing https://learn.microsoft.com/en-us/azure/artifact-signing/concept-certificate-management

Decision Making

Topic URL
Choose and change Artifact Signing pricing SKUs https://learn.microsoft.com/en-us/azure/artifact-signing/how-to-change-sku
Migrate from DGSSv2 to Azure Artifact Signing https://learn.microsoft.com/en-us/azure/artifact-signing/how-to-device-guard-signing-service-migration

Security

Topic URL
Understand Artifact Signing resources and RBAC roles https://learn.microsoft.com/en-us/azure/artifact-signing/concept-resources-roles
Manage Artifact Signing identity validations securely https://learn.microsoft.com/en-us/azure/artifact-signing/how-to-renew-identity-validation
Sign Windows code integrity policies with Artifact Signing https://learn.microsoft.com/en-us/azure/artifact-signing/how-to-sign-ci-policy
Assign Azure RBAC roles for Artifact Signing access https://learn.microsoft.com/en-us/azure/artifact-signing/tutorial-assign-roles

Configuration

Topic URL
Configure diagnostic settings and log routing for Artifact Signing https://learn.microsoft.com/en-us/azure/artifact-signing/how-to-sign-history

Integrations & Coding Patterns

Topic URL
Configure supported signing integrations for Artifact Signing https://learn.microsoft.com/en-us/azure/artifact-signing/how-to-signing-integrations
Files1
1 files · 18.2 KB

Select a file to preview

Overall Score

62/100

Grade

C

Adequate

Safety

75

Quality

55

Clarity

72

Completeness

48

Summary

This skill provides expert guidance for Azure Artifact Signing development, covering certificate lifecycle management, pricing/SKU decisions, RBAC security, diagnostic configuration, and CI/CD integrations. It combines a structured category index with remote documentation fetching via Microsoft Docs, requiring network access and specific MCP tools to retrieve full content.

Detected Capabilities

documentation fetching via mcp_microsoftdocsnetwork access to learn.microsoft.comfile readingreference linking

Trigger Keywords

Phrases that MCP clients use to match this skill to user intent.

certificate lifecycle managementRBAC for signingDGSSv2 migrationartifact signing setupsigning diagnosticsCI/CD signing integration

Risk Signals

INFO

Requires external MCP tool (mcp_microsoftdocs) that may not be installed

Compatibility section, Instructions
INFO

Network dependency on learn.microsoft.com for full content; graceful fallback via fetch_webpage documented

How to Use This Skill section
WARNING

Content self-reference uses undefined line ranges (L33-L60); no actual content at those lines in provided file

Category Index table

Referenced Domains

External domains referenced in skill content, detected by static analysis.

github.comlearn.microsoft.com

Use Cases

  • Manage signing certificate lifecycle and rotation policies in Azure
  • Migrate from DGSSv2 to Azure Artifact Signing and adjust SKU plans
  • Configure RBAC roles and identity validation for secure artifact signing
  • Set up diagnostic logging and monitoring for Artifact Signing operations
  • Integrate Artifact Signing with CI/CD pipelines and build workflows
  • Sign Windows code integrity policies using Azure Artifact Signing

Quality Notes

  • Strength: Clear category index with structured metadata guides agent to specific sections; table format is scannable
  • Strength: Explicit compatibility requirements documented upfront (network access, MCP tools)
  • Strength: Dual documentation fetching strategy (preferred + fallback) provides resilience
  • Weakness: Line number references (L33-L60) reference content not present in the provided SKILL.md file; these appear to be placeholders or refer to content in referenced files that are not included
  • Weakness: Instructions tell agent to 'read_file on linked reference file' but no reference files (security.md, best-practices.md, etc.) are present in the file manifest—only a LICENSE file
  • Weakness: Freshness check tells agent to verify metadata.generated_at is not >3 months old, but file is dated 2026-05-24 (future date, likely placeholder)
  • Weakness: Skill is thin—it's essentially a documentation router with a category index; real implementation would require supporting markdown files or actual inline content
  • Weakness: No error handling guidance for common network failures (timeout, 404, rate limiting from learn.microsoft.com)
  • Opportunity: Could benefit from inline examples of RBAC role assignments, SKU migration steps, or diagnostic config snippets to reduce agent's dependency on external docs
Model: claude-haiku-4-5-20251001Analyzed: Jun 26, 2026

Reviews

Add this skill to your library to leave a review.

No reviews yet

Be the first to share your experience.

Add MicrosoftDocs/azure-artifact-signing to your library

Command Palette

Search for a command to run...