Agentic InfraOps - Copilot Instructions
Azure infrastructure engineered by agents. Verified. Well-Architected. Deployable.
Quick Start
- Enable subagents:
"github.copilot.chat": { "customAgentInSubagent": { "enabled": true } }
- Open Chat (
Ctrl+Shift+I) → Select InfraOps Conductor → Describe your project
- The Conductor guides you through all 7 steps with approval gates
7-Step Workflow
| Step |
Agent |
Output |
Gate |
| 1 |
Requirements |
01-requirements.md |
Approval |
| 2 |
Architect |
02-architecture-assessment.md + cost estimate |
Approval |
| 3 |
Design (opt) |
03-des-*.{py,png,md} |
— |
| 4 |
Bicep Plan |
04-implementation-plan.md + governance |
Approval |
| 5 |
Bicep Code |
infra/bicep/{project}/ |
Validation |
| 6 |
Deploy |
06-deployment-summary.md |
Approval |
| 7 |
As-Built |
07-*.md documentation suite |
— |
All outputs → agent-output/{project}/. Context flows via artifact files + handoffs.
Skills (Auto-Invoked by Agents)
| Skill |
Purpose |
azure-defaults |
Regions, tags, naming, AVM, security, governance, pricing |
azure-artifacts |
Template H2 structures, styling, generation rules |
azure-diagrams |
Python architecture diagram generation |
azure-adr |
Architecture Decision Records |
github-operations |
GitHub issues, PRs, CLI, Actions, releases |
git-commit |
Commit message conventions |
docs-writer |
Documentation generation |
Agents read skills via: "Read .github/skills/{name}/SKILL.md" in their body.
Key Conventions
- Default region:
swedencentral (exception: Static Web Apps → westeurope)
- Required tags:
Environment, ManagedBy, Project, Owner
- Unique suffix:
uniqueString(resourceGroup().id) — generate once, pass everywhere
- AVM-first: Always prefer Azure Verified Modules over raw Bicep
- Security baseline: TLS 1.2, HTTPS-only, managed identity, Azure AD-only SQL auth
Full details in .github/skills/azure-defaults/SKILL.md.
Key Files
| Path |
Purpose |
.github/agents/*.agent.md |
Agent definitions |
.github/skills/*/SKILL.md |
Reusable skill knowledge |
.github/instructions/ |
File-type rules (Bicep, Markdown, etc.) |
agent-output/{project}/ |
Agent-generated artifacts |
infra/bicep/{project}/ |
Bicep templates |
mcp/azure-pricing-mcp/ |
Azure Pricing MCP server |
.vscode/mcp.json |
MCP server configuration |
Validation
bicep build infra/bicep/{project}/main.bicep
bicep lint infra/bicep/{project}/main.bicep
npm run validate
npm run lint:md
1---2name: agentic-infraops-copilot-instructions-33description: All outputs → agent-output/{project}/. Context flows via artifact files + handoffs.4---5# Agentic InfraOps - Copilot Instructions67> Azure infrastructure engineered by agents. Verified. Well-Architected. Deployable.89## Quick Start10111. Enable subagents: `"github.copilot.chat": { "customAgentInSubagent": { "enabled": true } }`122. Open Chat (`Ctrl+Shift+I`) → Select **InfraOps Conductor** → Describe your project133. The Conductor guides you through all 7 steps with approval gates1415## 7-Step Workflow1617| Step | Agent | Output | Gate |18| --- | --- | --- | --- |19| 1 | Requirements | `01-requirements.md` | Approval |20| 2 | Architect | `02-architecture-assessment.md` + cost estimate | Approval |21| 3 | Design (opt) | `03-des-*.{py,png,md}` | — |22| 4 | Bicep Plan | `04-implementation-plan.md` + governance | Approval |23| 5 | Bicep Code | `infra/bicep/{project}/` | Validation |24| 6 | Deploy | `06-deployment-summary.md` | Approval |25| 7 | As-Built | `07-*.md` documentation suite | — |2627All outputs → `agent-output/{project}/`. Context flows via artifact files + handoffs.2829## Skills (Auto-Invoked by Agents)3031| Skill | Purpose |32| --- | --- |33| `azure-defaults` | Regions, tags, naming, AVM, security, governance, pricing |34| `azure-artifacts` | Template H2 structures, styling, generation rules |35| `azure-diagrams` | Python architecture diagram generation |36| `azure-adr` | Architecture Decision Records |37| `github-operations` | GitHub issues, PRs, CLI, Actions, releases |38| `git-commit` | Commit message conventions |39| `docs-writer` | Documentation generation |4041Agents read skills via: **"Read `.github/skills/{name}/SKILL.md`"** in their body.4243## Key Conventions4445- **Default region**: `swedencentral` (exception: Static Web Apps → `westeurope`)46- **Required tags**: `Environment`, `ManagedBy`, `Project`, `Owner`47- **Unique suffix**: `uniqueString(resourceGroup().id)` — generate once, pass everywhere48- **AVM-first**: Always prefer Azure Verified Modules over raw Bicep49- **Security baseline**: TLS 1.2, HTTPS-only, managed identity, Azure AD-only SQL auth5051Full details in `.github/skills/azure-defaults/SKILL.md`.5253## Key Files5455| Path | Purpose |56| --- | --- |57| `.github/agents/*.agent.md` | Agent definitions |58| `.github/skills/*/SKILL.md` | Reusable skill knowledge |59| `.github/instructions/` | File-type rules (Bicep, Markdown, etc.) |60| `agent-output/{project}/` | Agent-generated artifacts |61| `infra/bicep/{project}/` | Bicep templates |62| `mcp/azure-pricing-mcp/` | Azure Pricing MCP server |63| `.vscode/mcp.json` | MCP server configuration |6465## Validation6667```bash68bicep build infra/bicep/{project}/main.bicep69bicep lint infra/bicep/{project}/main.bicep70npm run validate71npm run lint:md72```