Multi-cloud honesty
Service coverage
Every individual service across Azure, AWS, GCP, Kubernetes, identity systems, and hybrid connectivity — with a fully / partially / planned / not-supported grade per capability. We do not pretend coverage we haven't built. See the guide.
Legend:●Production-quality◐Common case covered◔Synthesised from adjacent data○Planned✕Not in scope
| Service | Disc | Inv | Topo | Sec | Net | IAM | Obs | $ | Recs |
|---|---|---|---|---|---|---|---|---|---|
Azure Virtual Machines azure.compute.virtualmachines | ● | ● | ● | ◐ | ● | ◐ | ◐ | ● | ● |
Azure Kubernetes Service (AKS) azure.compute.aks | ● | ● | ● | ◐ | ◐ | ◐ | ◐ | ● | ● |
Storage Account azure.storage.account | ● | ● | ◐ | ◐ | ◐ | ◐ | ◐ | ● | ● |
Microsoft Entra ID azure.identity.entraid | ● | ● | ○ | ◐ | ✕ | ● | ◐ | ● | ● |
Microsoft Defender for Cloud azure.security.defender | ● | ● | ○ | ● | ✕ | ◐ | ◐ | ● | ● |
Azure Container Registry azure.devops.acr | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Read-only and advisory by design — we never modify cloud resources. The grades describe what we can observe, not what we can change.