Skip to content
@Contoso-State

Contoso State

Independent demos & open-source tooling for cloud security and agentic AI. Not affiliated with Microsoft — a personal demonstration org.

Contoso‑State

Independent demos & open-source tooling for cloud security and agentic AI

Independent demo Focus License Not affiliated with Microsoft

Important

Not affiliated with Microsoft. Contoso‑State is an independent, personal demonstration organization. It is not affiliated with, endorsed by, or sponsored by Microsoft. "Contoso" is a fictitious company name Microsoft uses throughout its own samples and documentation — it is used here only in that same demonstration spirit. "Microsoft", "Azure", and related names are trademarks of Microsoft Corporation. Everything published here is provided for demonstration and educational purposes only.


🧭 About this organization

A home for hands-on, open-source experiments in cloud security and agentic AI — built to demonstrate ideas, share reference implementations, and explore what coordinated teams of AI agents can do safely. Opinions and projects here are the author's own.

🛡️ Featured project — Azure Red Team Agent Orchestration

An agentic, read-only red team for Microsoft Azure. A Pentest Manager orchestrates a team of fifteen domain specialists across identity, RBAC, network exposure, compute, and Kubernetes, then correlates their findings into real attack paths and a leadership-ready report. The same team runs natively on GitHub Copilot CLI, Claude Code, OpenAI Codex CLI, and Cursor — all backed by one shared guard core that denies any state-changing action.

  📖  Documentation & demo: https://contoso-state.github.io/red-team-agent-orchestration/
  💻  Source: https://github.com/Contoso-State/red-team-agent-orchestration

⚠️ AI & usage disclaimer

These projects use AI agents, which can make mistakes — including generating false positives and missing real issues. Everything here is a starting point, not a substitute for professional human review. Use at your own risk, ensure you are properly authorized, and independently validate all findings before acting on them.

📄 License

Unless stated otherwise, projects in this organization are released under the MIT License.


An independent demonstration organization · Not affiliated with Microsoft · Built for the security community

Popular repositories Loading

  1. red-team-agent-orchestration red-team-agent-orchestration Public

    JavaScript 6 1

  2. Custodia Custodia Public

    A Microsoft Copilot Studio agent that helps FOIA and public-records teams run Microsoft Purview eDiscovery (Premium) safely — on behalf of the signed-in reviewer, with delegated auth and no destruc…

    PowerShell 1

  3. azure-sentinel-analytics-rules azure-sentinel-analytics-rules Public

    Microsoft Sentinel analytics rules for detecting identity-based attacks in Azure/Entra ID environments

    Python

  4. .github .github Public

    Organization profile for Contoso-State — an independent cloud-security & AI demo org (not affiliated with Microsoft).

  5. risky-signins-export-guide risky-signins-export-guide Public

    Guide: export/automate risky sign-in reports from Log Analytics without Event Hub

    PowerShell

Repositories

Showing 5 of 5 repositories

People

This organization has no public members. You must be a member to see who’s a part of this organization.

Top languages

Loading…

Most used topics

Loading…