Back to Operation

Storage DataShare Contributor

Azure Built-in Role

Role Information

Details and metadata

Role ID
35c49d44-ccc1-4b18-8267-cfb3bacdd396
Type
BuiltInRole
Last Updated (Azure)
2025-11-11 16:10:16

Change History

Track all modifications to this role

2025-12-14 23:49:13 Initial Scan
View details
{
  "properties": {
    "roleName": "Storage DataShare Contributor",
    "type": "BuiltInRole",
    "description": "Allows creating and managing storage dataShares to share data from storage accounts in-place. This role is in preview and subject to change.",
    "assignableScopes": [
      "/"
    ],
    "permissions": [
      {
        "actions": [
          "Microsoft.Authorization/*/read",
          "Microsoft.Insights/alertRules/*",
          "Microsoft.Resources/deployments/*",
          "Microsoft.Resources/subscriptions/resourceGroups/read",
          "Microsoft.Storage/storageAccounts/read",
          "Microsoft.Storage/storageAccounts/listServiceSas/action",
          "Microsoft.Storage/storageAccounts/blobServices/read",
          "Microsoft.Storage/storageAccounts/blobServices/containers/read",
          "Microsoft.Storage/locations/DataManagementRPOperationStatuses/read",
          "Microsoft.Storage/locations/DataManagementRPOperationStatuses/write",
          "Microsoft.Storage/storageAccounts/dataShares/read",
          "Microsoft.Storage/storageAccounts/dataShares/delete",
          "Microsoft.Storage/storageAccounts/dataShares/write"
        ],
        "notActions": [],
        "dataActions": [
          "Microsoft.Storage/storageAccounts/blobServices/containers/blobs/read"
        ],
        "notDataActions": []
      }
    ],
    "createdOn": "2025-11-11T16:10:16.6Z",
    "updatedOn": "2025-11-11T16:10:16.6Z",
    "createdBy": null,
    "updatedBy": null
  },
  "id": "/providers/Microsoft.Authorization/roleDefinitions/35c49d44-ccc1-4b18-8267-cfb3bacdd396",
  "type": "Microsoft.Authorization/roleDefinitions",
  "name": "35c49d44-ccc1-4b18-8267-cfb3bacdd396"
}

Latest Role JSON

Raw definition from Azure

{
  "properties": {
    "roleName": "Storage DataShare Contributor",
    "type": "BuiltInRole",
    "description": "Allows creating and managing storage dataShares to share data from storage accounts in-place. This role is in preview and subject to change.",
    "assignableScopes": [
      "/"
    ],
    "permissions": [
      {
        "actions": [
          "Microsoft.Authorization/*/read",
          "Microsoft.Insights/alertRules/*",
          "Microsoft.Resources/deployments/*",
          "Microsoft.Resources/subscriptions/resourceGroups/read",
          "Microsoft.Storage/storageAccounts/read",
          "Microsoft.Storage/storageAccounts/listServiceSas/action",
          "Microsoft.Storage/storageAccounts/blobServices/read",
          "Microsoft.Storage/storageAccounts/blobServices/containers/read",
          "Microsoft.Storage/locations/DataManagementRPOperationStatuses/read",
          "Microsoft.Storage/locations/DataManagementRPOperationStatuses/write",
          "Microsoft.Storage/storageAccounts/dataShares/read",
          "Microsoft.Storage/storageAccounts/dataShares/delete",
          "Microsoft.Storage/storageAccounts/dataShares/write"
        ],
        "notActions": [],
        "dataActions": [
          "Microsoft.Storage/storageAccounts/blobServices/containers/blobs/read"
        ],
        "notDataActions": []
      }
    ],
    "createdOn": "2025-11-11T16:10:16.6Z",
    "updatedOn": "2025-11-11T16:10:16.6Z",
    "createdBy": null,
    "updatedBy": null
  },
  "id": "/providers/Microsoft.Authorization/roleDefinitions/35c49d44-ccc1-4b18-8267-cfb3bacdd396",
  "type": "Microsoft.Authorization/roleDefinitions",
  "name": "35c49d44-ccc1-4b18-8267-cfb3bacdd396"
}

Effective Permissions

Operations granted by this role (58 total)

Permission Patterns (from role definition)

Actions 13 patterns
Microsoft.Authorization/*/read Microsoft.Insights/alertRules/* Microsoft.Resources/deployments/* Microsoft.Resources/subscriptions/resourceGroups/read Microsoft.Storage/storageAccounts/read Microsoft.Storage/storageAccounts/listServiceSas/action Microsoft.Storage/storageAccounts/blobServices/read Microsoft.Storage/storageAccounts/blobServices/containers/read Microsoft.Storage/locations/DataManagementRPOperationStatuses/read Microsoft.Storage/locations/DataManagementRPOperationStatuses/write Microsoft.Storage/storageAccounts/dataShares/read Microsoft.Storage/storageAccounts/dataShares/delete Microsoft.Storage/storageAccounts/dataShares/write
Data Actions 1 pattern
Microsoft.Storage/storageAccounts/blobServices/containers/blobs/read

Control Plane Operations (57)

Data Plane Operations (1)