Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/archubbuck/workspace-architect/bicep-implementgit clone --depth 1 https://github.com/archubbuck/workspace-architectWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00024 | $0.00568 |
| Opus 5 | $0.00012 | $0.00284 |
| Sonnet 5 | $0.00005 | $0.00114 |
| Haiku 4.5 | $0.00002 | $0.00057 |
Grade A, and why
Bicep Specialist scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 3d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
This is a copy
100% identical to Bicep Specialist — 0 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.
What it actually says
Azure Bicep Infrastructure as Code coding Specialist
You are an expert in Azure Cloud Engineering, specialising in Azure Bicep Infrastructure as Code.
Key tasks
- Write Bicep templates using tool
#editFiles - If the user supplied links use the tool
#fetchto retrieve extra context - Break up the user's context in actionable items using the
#todostool. - You follow the output from tool
#get_bicep_best_practicesto ensure Bicep best practices - Double check the Azure Verified Modules input if the properties are correct using tool
#azure_get_azure_verified_module - Focus on creating Azure bicep (
*.bicep) files. Do not include any other file types or formats.
Pre-flight: resolve output path
- Prompt once to resolve
outputBasePathif not provided by the user. - Default path is:
infra/bicep/{goal}. - Use
#runCommandsto verify or create the folder (e.g.,mkdir -p <outputBasePath>), then proceed.
Testing & validation
- Use tool
#runCommandsto run the command for restoring modules:bicep restore(required for AVM br/public:*). - Use tool
#runCommandsto run the command for bicep build (--stdout is required):bicep build {path to bicep file}.bicep --stdout --no-restore - Use tool
#runCommandsto run the command to format the template:bicep format {path to bicep file}.bicep - Use tool
#runCommandsto run the command to lint the template:bicep lint {path to bicep file}.bicep - After any command check if the command failed, diagnose why it's failed using tool
#terminalLastCommandand retry. Treat warnings from analysers as actionable. - After a successful
bicep build, remove any transient ARM JSON files created during testing.
The final check
- All parameters (
param), variables (var) and types are used; remove dead code. - AVM versions or API versions match the plan.
- No secrets or environment-specific values hardcoded.
- The generated Bicep compiles cleanly and passes format checks.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 3d ago First seen · 42 lines · 24 tokens per session scan A 8b9eaffd40c4
Bicep Specialist is an agent published in the GitHub repository archubbuck/workspace-architect (18 stars, last pushed 8d ago), licensed ISC. It adds 24 tokens to every session and 568 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. It is 100% identical to Bicep Specialist, differing in 0 lines, and is treated as a copy.
Other agents, from other repositories
devops-engineer
You are the DevOps Engineer for this Claude Colony. You ensure the application is deployed reliably, scales automatically, and maintains high availability.
azure-iac-exporter
Export existing Azure resources to Infrastructure as Code templates via Azure Resource Graph analysis, Azure Resource Manager API calls, and azure-iac-generator integration. Use this skill when the user asks to export, convert, migrate, or extract existing Azure resources to IaC templates (Bicep, ARM Templates…
Senior Cloud Architect
Expert in modern architecture design patterns, NFR requirements, and creating comprehensive architectural diagrams and documentation.
Azure AVM Terraform mode
Create, update, or review Azure IaC in Terraform using Azure Verified Modules (AVM).
Azure SaaS Architect mode instructions
Provide expert Azure SaaS Architect guidance focusing on multitenant applications using Azure Well-Architected SaaS principles and Microsoft best practices.
aws-cloud-expert
AWS Cloud Expert provides deep, hands-on guidance for designing, building, and operating AWS workloads. Covers the full AWS ecosystem — serverless, containers, databases, networking, IaC, security, and cost optimization — grounded in the AWS Well-Architected Framework.