resource-compliance
Analyze one or more SmartCMP resources for lifecycle, patch, security, and configuration posture.
Purpose
This skill fetches resource facts from SmartCMP, consumes the shared
normalized type + properties view from list_resource.py, routes analysis by
componentType, and then performs explainable checks with optional live
internet validation.
Scripts
| Script | Description | Location |
|---|---|---|
analyze_resource.py |
Analyze one or more resources by ID | scripts/ |
Examples
python scripts/analyze_resource.py <resource_id>
python scripts/analyze_resource.py --payload-json '{"resourceIds":["id-1"],"triggerSource":"webhook"}'
Notes
- Supports both direct user input and webhook-style payloads.
- Emits human-readable output plus
##RESOURCE_COMPLIANCE_START##metadata. - Routes analyzers by normalized
type(componentType) and emitsanalysisTargets. - Supports cloud/software/OS analyzer families (including AliCloud OSS, Tomcat, MySQL, PostgreSQL, Redis, Elasticsearch, SQL Server, Linux, Windows).
- Performs best-effort live internet validation and degrades conservatively when validation is unavailable.
Workflow
See references/WORKFLOW.md for the supported workflow.