azure_validate_policy_compliance
Validate Azure Policy compliance and governance controls. Identifies policy violations, non-compliant resources, governance gaps, and exemption issues.
Instructions
NEW in v1.14.0 Validate Azure Policy compliance and governance controls. Checks: policy assignments (scope: subscription/resource group/resource), compliance state (compliant/non-compliant/conflict/exempt), policy effects (deny, audit, append, modify), built-in vs custom policies, policy initiative (set) assignments, exemptions and exceptions, audit log retention. Returns: policy violations by severity, non-compliant resources, governance gaps, exemption review, compliance trends.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| subscriptionId | Yes | Azure subscription ID | |
| resourceGroup | No | Optional: Filter by specific resource group | |
| policyScope | No | Scope of policy analysis. Default: subscription | |
| includeExemptions | No | Include policy exemptions and waivers in analysis. Default: true | |
| format | No | Output format: 'markdown' (default, human-readable) or 'json' (machine-readable) |