Role Information
Details and metadata
c12c1c16-33a1-487b-954d-41c89c60f349
Change History
Track all modifications to this role
Updated On
Event Type
Summary & Details
2021-11-11 20:13:48
Initial Scan
Show full JSON
{
"properties": {
"roleName": "Reader and Data Access",
"type": "BuiltInRole",
"description": "Lets you view everything but will not let you delete or create a storage account or contained resource. It will also allow read/write access to all data contained in a storage account via access to storage account keys.",
"assignableScopes": [
"/"
],
"permissions": [
{
"actions": [
"Microsoft.Storage/storageAccounts/listKeys/action",
"Microsoft.Storage/storageAccounts/ListAccountSas/action",
"Microsoft.Storage/storageAccounts/read"
],
"notActions": [],
"dataActions": [],
"notDataActions": []
}
],
"createdOn": "2018-03-27T23:20:46.149Z",
"updatedOn": "2021-11-11T20:13:48.227Z",
"createdBy": null,
"updatedBy": null
},
"id": "/providers/Microsoft.Authorization/roleDefinitions/c12c1c16-33a1-487b-954d-41c89c60f349",
"type": "Microsoft.Authorization/roleDefinitions",
"name": "c12c1c16-33a1-487b-954d-41c89c60f349"
}
2021-11-11 20:13:48
Initial Scan
View details
{
"properties": {
"roleName": "Reader and Data Access",
"type": "BuiltInRole",
"description": "Lets you view everything but will not let you delete or create a storage account or contained resource. It will also allow read/write access to all data contained in a storage account via access to storage account keys.",
"assignableScopes": [
"/"
],
"permissions": [
{
"actions": [
"Microsoft.Storage/storageAccounts/listKeys/action",
"Microsoft.Storage/storageAccounts/ListAccountSas/action",
"Microsoft.Storage/storageAccounts/read"
],
"notActions": [],
"dataActions": [],
"notDataActions": []
}
],
"createdOn": "2018-03-27T23:20:46.149Z",
"updatedOn": "2021-11-11T20:13:48.227Z",
"createdBy": null,
"updatedBy": null
},
"id": "/providers/Microsoft.Authorization/roleDefinitions/c12c1c16-33a1-487b-954d-41c89c60f349",
"type": "Microsoft.Authorization/roleDefinitions",
"name": "c12c1c16-33a1-487b-954d-41c89c60f349"
}
Latest Role JSON
Raw definition from Azure
{
"properties": {
"roleName": "Reader and Data Access",
"type": "BuiltInRole",
"description": "Lets you view everything but will not let you delete or create a storage account or contained resource. It will also allow read/write access to all data contained in a storage account via access to storage account keys.",
"assignableScopes": [
"/"
],
"permissions": [
{
"actions": [
"Microsoft.Storage/storageAccounts/listKeys/action",
"Microsoft.Storage/storageAccounts/ListAccountSas/action",
"Microsoft.Storage/storageAccounts/read"
],
"notActions": [],
"dataActions": [],
"notDataActions": []
}
],
"createdOn": "2018-03-27T23:20:46.149Z",
"updatedOn": "2021-11-11T20:13:48.227Z",
"createdBy": null,
"updatedBy": null
},
"id": "/providers/Microsoft.Authorization/roleDefinitions/c12c1c16-33a1-487b-954d-41c89c60f349",
"type": "Microsoft.Authorization/roleDefinitions",
"name": "c12c1c16-33a1-487b-954d-41c89c60f349"
}
Effective Permissions
Operations granted by this role (1 total)
Control Plane Operations (1)
No matching operations
/ shown
Data Plane Operations (0)
No data plane operations granted