|
16681 | 16681 | "/users/{id}/directreports": "", |
16682 | 16682 | "/users/{id}/joinedteams": "", |
16683 | 16683 | "/users/{id}/licensedetails": "", |
16684 | | - "/users/{id}/licenseDetails/getTeamsLicensingDetails": "", |
16685 | 16684 | "/users/{id}/manager": "", |
16686 | 16685 | "/users/{id}/memberof": "least=Application", |
16687 | 16686 | "/users/{id}/oauth2permissiongrants": "least=DelegatedWork,Application", |
|
16730 | 16729 | "/me/registereddevices": "", |
16731 | 16730 | "/me/scopedrolememberof": "least=DelegatedWork", |
16732 | 16731 | "/me/transitivememberof": "", |
16733 | | - "/privilegedroleassignmentrequests": "least=DelegatedWork" |
| 16732 | + "/privilegedroleassignmentrequests": "least=DelegatedWork", |
| 16733 | + "/users/{id}/licenseDetails/getTeamsLicensingDetails": "" |
16734 | 16734 | } |
16735 | 16735 | }, |
16736 | 16736 | { |
|
16966 | 16966 | "/users/{id}/directreports": "", |
16967 | 16967 | "/users/{id}/joinedteams": "", |
16968 | 16968 | "/users/{id}/licensedetails": "", |
16969 | | - "/users/{id}/licenseDetails/getTeamsLicensingDetails": "", |
16970 | 16969 | "/users/{id}/memberof": "", |
16971 | 16970 | "/users/{id}/owneddevices": "", |
16972 | 16971 | "/users/{id}/ownedobjects": "", |
|
17108 | 17107 | "/onpremisespublishingprofiles/applicationproxy/connectorgroups/{id}/applications": "least=DelegatedWork", |
17109 | 17108 | "/onpremisespublishingprofiles/applicationproxy/connectors": "least=DelegatedWork", |
17110 | 17109 | "/onpremisespublishingprofiles/applicationproxy/connectors/{id}": "least=DelegatedWork", |
17111 | | - "/serviceprincipals": "" |
| 17110 | + "/serviceprincipals": "", |
| 17111 | + "/users/{id}/licenseDetails/getTeamsLicensingDetails": "" |
17112 | 17112 | } |
17113 | 17113 | }, |
17114 | 17114 | { |
|
37378 | 37378 | "PrivilegedAccess.Read.AzureADGroup": { |
37379 | 37379 | "authorizationType": "oAuth2", |
37380 | 37380 | "schemes": { |
| 37381 | + "DelegatedWork": { |
| 37382 | + "adminDisplayName": "Read privileged access to Azure AD groups", |
| 37383 | + "adminDescription": "Allows the app to read time-based assignment and just-in-time elevation (including scheduled elevation) of Azure AD groups in your organization, without a signed-in user.", |
| 37384 | + "userDisplayName": "Read privileged access to Azure AD groups", |
| 37385 | + "userDescription": "Allows the app to read time-based assignment and just in time elevation (including scheduled elevation) of Azure AD groups in your organization, on your behalf.", |
| 37386 | + "requiresAdminConsent": true, |
| 37387 | + "privilegeLevel": 4 |
| 37388 | + }, |
37381 | 37389 | "Application": { |
37382 | 37390 | "adminDisplayName": "Read privileged access to Azure AD groups", |
37383 | 37391 | "adminDescription": "Allows the app to read time-based assignment and just-in-time elevation (including scheduled elevation) of Azure AD groups in your organization, without a signed-in user.", |
|
37397 | 37405 | "/privilegedaccess/azureresources/resources/{id}/roleassignmentrequests": "", |
37398 | 37406 | "/privilegedaccess/azureresources/roleassignmentrequests": "" |
37399 | 37407 | } |
| 37408 | + }, |
| 37409 | + { |
| 37410 | + "schemeKeys": [ |
| 37411 | + "DelegatedWork", |
| 37412 | + "Application" |
| 37413 | + ], |
| 37414 | + "methods": [ |
| 37415 | + "GET" |
| 37416 | + ], |
| 37417 | + "paths": { |
| 37418 | + "/identityGovernance/privilegedAccess/group/resources": "least=DelegatedWork,Application", |
| 37419 | + "/identityGovernance/privilegedAccess/group/resources/{id}": "least=DelegatedWork,Application" |
| 37420 | + } |
37400 | 37421 | } |
37401 | 37422 | ], |
37402 | 37423 | "ownerInfo": { |
|
37520 | 37541 | "userDescription": "Allows the app to request and manage time-based assignment and just-in-time elevation (including scheduled elevation) of Azure AD groups, on your behalf.", |
37521 | 37542 | "requiresAdminConsent": true, |
37522 | 37543 | "privilegeLevel": 4 |
| 37544 | + }, |
| 37545 | + "Application": { |
| 37546 | + "adminDisplayName": "Read and write privileged access to Azure AD groups", |
| 37547 | + "adminDescription": "Allows the app to request and manage time-based assignment and just-in-time elevation (including scheduled elevation) of Azure AD groups, on behalf of the signed-in user.", |
| 37548 | + "requiresAdminConsent": true, |
| 37549 | + "privilegeLevel": 4 |
37523 | 37550 | } |
37524 | 37551 | }, |
37525 | 37552 | "pathSets": [ |
|
37545 | 37572 | "paths": { |
37546 | 37573 | "/privilegedaccess/azureresources/roleassignmentrequests/{id}/cancel": "" |
37547 | 37574 | } |
| 37575 | + }, |
| 37576 | + { |
| 37577 | + "schemeKeys": [ |
| 37578 | + "DelegatedWork", |
| 37579 | + "Application" |
| 37580 | + ], |
| 37581 | + "methods": [ |
| 37582 | + "GET" |
| 37583 | + ], |
| 37584 | + "paths": { |
| 37585 | + "/identityGovernance/privilegedAccess/group/resources": "", |
| 37586 | + "/identityGovernance/privilegedAccess/group/resources/{id}": "" |
| 37587 | + } |
37548 | 37588 | } |
37549 | 37589 | ], |
37550 | 37590 | "ownerInfo": { |
|
51886 | 51926 | ], |
51887 | 51927 | "paths": { |
51888 | 51928 | "/users/{id}/deleteddatetime": "least=Application", |
51889 | | - "/users/{id}/licenseDetails/getTeamsLicensingDetails": "least=Application", |
51890 | 51929 | "/users/{id}/memberof/{id}": "least=Application", |
51891 | 51930 | "/users/{id}/outlook/supportedlanguages": "least=Application", |
51892 | 51931 | "/users/{id}/outlook/supportedtimezones": "least=Application", |
|
54205 | 54244 | "ownerSecurityGroup": "afsdev" |
54206 | 54245 | } |
54207 | 54246 | }, |
| 54247 | + "VerifiedId-Profile.Read.All": { |
| 54248 | + "authorizationType": "oAuth2", |
| 54249 | + "schemes": { |
| 54250 | + "DelegatedWork": { |
| 54251 | + "adminDisplayName": "Read Verified Id profiles", |
| 54252 | + "adminDescription": "This role can read Verified Id profiles in a tenant.", |
| 54253 | + "userDisplayName": "Read Verified Id profiles", |
| 54254 | + "userDescription": "This role can read Verified Id profiles in a tenant.", |
| 54255 | + "requiresAdminConsent": true, |
| 54256 | + "privilegeLevel": 3 |
| 54257 | + }, |
| 54258 | + "Application": { |
| 54259 | + "adminDisplayName": "Read Verified Id profiles", |
| 54260 | + "adminDescription": "This role can read Verified Id profiles in a tenant.", |
| 54261 | + "requiresAdminConsent": true, |
| 54262 | + "privilegeLevel": 4 |
| 54263 | + } |
| 54264 | + }, |
| 54265 | + "pathSets": [ |
| 54266 | + { |
| 54267 | + "schemeKeys": [ |
| 54268 | + "DelegatedWork", |
| 54269 | + "Application" |
| 54270 | + ], |
| 54271 | + "methods": [ |
| 54272 | + "GET" |
| 54273 | + ], |
| 54274 | + "paths": { |
| 54275 | + "/identity/verifiedId/profiles": "least=DelegatedWork,Application", |
| 54276 | + "/identity/verifiedId/profiles/{id}": "least=DelegatedWork,Application" |
| 54277 | + } |
| 54278 | + } |
| 54279 | + ], |
| 54280 | + "ownerInfo": { |
| 54281 | + "ownerSecurityGroup": "cred_recovery" |
| 54282 | + } |
| 54283 | + }, |
| 54284 | + "VerifiedId-Profile.ReadWrite.All": { |
| 54285 | + "authorizationType": "oAuth2", |
| 54286 | + "schemes": { |
| 54287 | + "DelegatedWork": { |
| 54288 | + "adminDisplayName": "Read and write Verified Id profiles", |
| 54289 | + "adminDescription": "This role can read and write Verified Id profiles in a tenant.", |
| 54290 | + "userDisplayName": "Read and write Verified Id profiles", |
| 54291 | + "userDescription": "This role can read and write Verified Id profiles in a tenant.", |
| 54292 | + "requiresAdminConsent": true, |
| 54293 | + "privilegeLevel": 4 |
| 54294 | + } |
| 54295 | + }, |
| 54296 | + "pathSets": [ |
| 54297 | + { |
| 54298 | + "schemeKeys": [ |
| 54299 | + "DelegatedWork" |
| 54300 | + ], |
| 54301 | + "methods": [ |
| 54302 | + "DELETE", |
| 54303 | + "GET", |
| 54304 | + "PATCH", |
| 54305 | + "POST" |
| 54306 | + ], |
| 54307 | + "paths": { |
| 54308 | + "/identity/verifiedId/profiles": "least=DelegatedWork", |
| 54309 | + "/identity/verifiedId/profiles/{id}": "least=DelegatedWork" |
| 54310 | + } |
| 54311 | + } |
| 54312 | + ], |
| 54313 | + "ownerInfo": { |
| 54314 | + "ownerSecurityGroup": "cred_recovery" |
| 54315 | + } |
| 54316 | + }, |
54208 | 54317 | "VirtualAppointment.Read": { |
54209 | 54318 | "authorizationType": "oAuth2", |
54210 | 54319 | "schemes": { |
|
0 commit comments