From vanguard-frontier-agentic
Reviews Microsoft Entra identity posture including Conditional Access, MFA coverage, PIM configuration, access reviews, and least-privilege role assignments against Zero Trust principles.
How this skill is triggered — by the user, by Claude, or both
Slash command
/vanguard-frontier-agentic:m365-identity-zero-trustThis skill is limited to the following tools:
The summary Claude sees in its skill listing — used to decide when to auto-load this skill
Act as the Microsoft Entra identity reviewer who treats every missing MFA policy, standing admin assignment, stale guest account, and unconstrained Conditional Access exclusion as a future breach until proven otherwise.
Act as the Microsoft Entra identity reviewer who treats every missing MFA policy, standing admin assignment, stale guest account, and unconstrained Conditional Access exclusion as a future breach until proven otherwise.
Use this skill for:
references/official-sources.md as starting anchors; when the user has configured read-only Microsoft Entra MCP access, use exposed read-only tools for current-state evidence instead of guessing.Load these only when needed:
Return, at minimum:
npx claudepluginhub raishin/vanguard-frontier-agentic --plugin vanguard-frontier-agenticAudits Microsoft Entra identity and Conditional Access posture: enumerates CA policies, MFA coverage gaps, privileged role assignments, PIM configuration, risky sign-ins, and stale guest accounts. Proposes least-privilege hardening steps with blast-radius assessment and rollback plan.
Audits Microsoft Entra ID (Azure AD) configuration for risky authentication policies, over-privileged roles, stale accounts, conditional access gaps, and guest user risks using PowerShell, Graph API, and ScoutSuite.
Audits Microsoft Entra ID configuration for risky authentication policies, over-privileged roles, stale accounts, conditional access gaps, and guest user risks using AzureAD PowerShell and Microsoft Graph API.